Files
splunk-security_content/lookups/malicious_powershell_strings.yml
T
Steven Dick 81e2d0ce3c Update lookups/malicious_powershell_strings.yml
add case_sesnsitive tag

Co-authored-by: Nasreddine Bencherchali <monsteroffire2@gmail.com>
2025-01-31 07:29:21 -05:00

8 lines
276 B
YAML

description: A list of commands and commandlets used with known malicious powershell tooling.
filename: malicious_powershell_strings_20250113.csv
match_type: WILDCARD(command)
min_matches: 1
max_matches: 1
name: malicious_powershell_strings
case_sensitive_match: false