Azure-Sentinel/Detections/SecurityEvent
Shain Wray (MSTIC) 5b834c11db Also fixing locale in doc URLs 2020-06-03 06:51:10 -07:00
..
ExcessiveLogonFailures.yaml
GroupCreatedAddedToPrivlegeGroup_1h.yaml
MultipleFailedFollowedBySuccess.yaml
PotentialKerberoast.yaml
RDP_MultipleConnectionsFromSingleSystem.yaml
RDP_Nesting.yaml
RDP_RareConnection.yaml
SecurityEventLogCleared.yaml
TimeSeriesAnomaly-ProcessExecutions.yaml
UserAccountAdd-Removed.yaml
UserAccountAddedToPrivlegeGroup_1h.yaml
UserAccountCreatedDeleted_10m.yaml
UserAccountEnabledDisabled_10m.yaml
UserCreatedAddedToBuiltinAdmins_1d.yaml
base64_encoded_pefile.yaml
execute_base64_decodedpayload.yaml
gte_6_FailedLogons_10m.yaml
malware_in_recyclebin.yaml
password_never_expires.yaml
password_not_set.yaml
powershell_empire.yaml