mirror of
https://github.com/socfortress/Wazuh-Rules.git
synced 2025-10-23 00:02:11 +00:00
14 lines
338 B
XML
14 lines
338 B
XML
<group name="alienvault,">
|
|
<rule id="100080" level="12">
|
|
<decoded_as>json</decoded_as>
|
|
<field name="sections">\.+</field>
|
|
<field name="type">\.+</field>
|
|
<description>AlienVault OTX -Indicator(s) Found</description>
|
|
<mitre>
|
|
<id>T1036</id>
|
|
</mitre>
|
|
<options>no_full_log</options>
|
|
<group>otx_ioc,</group>
|
|
</rule>
|
|
</group>
|