Update MITRE_TECHNIQUES_FROM_SYSMON_EVENT1.xml

This commit is contained in:
taylor_socfortress
2022-11-30 13:23:02 -06:00
committed by GitHub
parent 59d1c5d41e
commit 5fe8d5c6f1

View File

@@ -1167,6 +1167,8 @@
<mitre>
<id>T1134</id>
</mitre>
<options>no_full_log</options>
<group>sysmon_event1,windows_sysmon_event1,</group>
</rule>
<!-- Rules 100600 - 100699: Correlation Rules -->
<!-- Frequency rule to capture 3 sysmon event 1 Anomalies -->