Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[New] Suspicious Execution from INET Cache #3445

Merged
merged 3 commits into from
Feb 15, 2024
Merged

[New] Suspicious Execution from INET Cache #3445

merged 3 commits into from
Feb 15, 2024

Conversation

Samirbous
Copy link
Contributor

image

@Samirbous Samirbous added Rule: New Proposal for new rule OS: Windows windows related rules labels Feb 14, 2024
@Samirbous Samirbous self-assigned this Feb 14, 2024
Copy link
Contributor

@Aegrah Aegrah left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🔥

Copy link
Contributor

@w0rk3r w0rk3r left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Fire🧙🏼

Copy link
Contributor

@terrancedejesus terrancedejesus left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Nice addition!

@Samirbous Samirbous merged commit 4809de6 into main Feb 15, 2024
13 checks passed
@Samirbous Samirbous deleted the url-cve branch February 15, 2024 19:14
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
protectionsmachine pushed a commit that referenced this pull request Feb 15, 2024
* Create initial_access_execution_from_inetcache.toml

* Update initial_access_execution_from_inetcache.toml

(cherry picked from commit 4809de6)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backport: auto Domain: Endpoint OS: Windows windows related rules Rule: New Proposal for new rule
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants