Skip to content

new: windows discovery rules#6040

Open
swachchhanda000 wants to merge 3 commits into
SigmaHQ:masterfrom
swachchhanda000:discovery_rules
Open

new: windows discovery rules#6040
swachchhanda000 wants to merge 3 commits into
SigmaHQ:masterfrom
swachchhanda000:discovery_rules

Conversation

@swachchhanda000

Copy link
Copy Markdown
Collaborator

Summary of the Pull Request

Changelog

new: Certificate Store Enumeration Via CertUtil
new: Startup Items Enumeration Via WMIC Or PowerShell

Example Log Event

Fixed Issues

SigmaHQ Rule Creation Conventions

  • If your PR adds new rules, please consider following and applying these conventions

@github-actions github-actions Bot added Rules Review Needed The PR requires review Windows Pull request add/update windows related rules labels Jun 2, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Review Needed The PR requires review Rules Windows Pull request add/update windows related rules

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant