github splunk/security_content v3.41.0

latest releases: v4.42.0, v4.41.0, v4.40.0...
2 years ago

New Analytic Stories

  • Microsoft Support Diagnostic Tool Vulnerability CVE-2022-30190

New Analytics

  • Windows Office Product Spawning MSDT
  • Windows Execute Arbitrary Commands with MSDT
  • Windows Command and Scripting Interpreter Path Traversal Exec

Updated Analytic Stories

  • Windows Defense Evasion Tactics
  • Windows Drivers

Other Updates

  • Fixed bug where MITRE coverage maps and detection count was not updating issue 2215
  • Added RBA score explanation to research.splunk.com

Don't miss a new security_content release

NewReleases is sending notifications on new releases.