The Apache Software Foundation (ASF) has released security updates to address several security vulnerabilities in the HTTP ...
description: The following analytic detects the use of PowerShell to delete shadow copies via the WMIC PowerShell module. It leverages EventCode 4104 and searches for specific keywords like ...
description: The following analytic detects the creation of new accounts elevated to local administrators. It uses Windows event logs, specifically EventCode 4720 (user account creation) and EventCode ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results