Skip to content

Pull requests: SigmaHQ/sigma

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

Feat: susp msix/appX package installation detection Maintenance Related to additions and update of the repository features Rules Windows Pull request add/update windows related rules
#5741 opened Nov 3, 2025 by swachchhanda000 Loading…
API_Hooking_detection Linux Pull request add/update linux related rules Rules
#5739 opened Nov 2, 2025 by AAtashGar Loading…
Fix windash issues and some renames Ready to Merge Rules Windows Pull request add/update windows related rules
#5733 opened Oct 31, 2025 by nasbench Loading… Sigma-December-Release
Fix rule to detect downloads via CertReq Ready to Merge Rules Windows Pull request add/update windows related rules
#5727 opened Oct 27, 2025 by RiqTam Loading… Sigma-December-Release
1 new rule, 1 modification of older rule Review Needed The PR requires review Rules Windows Pull request add/update windows related rules
#5725 opened Oct 27, 2025 by Koifman Loading… Sigma-December-Release
Create win_trusted_for_delegation_rights.yml Rules Windows Pull request add/update windows related rules
#5723 opened Oct 24, 2025 by ShujiTsushima Loading…
Create enumeration_with_bloodhound_on_dc.yml Rules Windows Pull request add/update windows related rules
#5721 opened Oct 23, 2025 by ShujiTsushima Loading…
Add Regression Tests and Simulation Links - First Batch Maintenance Related to additions and update of the repository features Rules Windows Pull request add/update windows related rules
#5719 opened Oct 22, 2025 by nasbench Draft Sigma-December-Release
New rules related to recent reported ransom group activity (The Gentlemen) Rules Windows Pull request add/update windows related rules
#5717 opened Oct 22, 2025 by tropChaud Loading…
Add detection rules for abuse of OpenEDR's response features Rules Windows Pull request add/update windows related rules
#5716 opened Oct 22, 2025 by tsale Loading…
Add New Detection Rules for Grixba Malware Reconnaissance Activities Author Input Required changes the require information from original author of the rules Rules Windows Pull request add/update windows related rules Work In Progress Some changes are needed
#5707 opened Oct 19, 2025 by YxinMiracle Loading… Sigma-December-Release
macOS process create detections related to Bluenoroff macOS intrusion MacOS Pull request add/update macos related rules Rules
#5700 opened Oct 17, 2025 by stuartjash Loading…
add detection rule for suspicious use of BrowserCore.exe in PRT extra… Author Input Required changes the require information from original author of the rules Rules Windows Pull request add/update windows related rules Work In Progress Some changes are needed
#5676 opened Oct 3, 2025 by e0909 Loading…
Hunting rules for Hex Staging Attack and HTML Phishing Attachment 2nd Review Needed PR need a second approval Author Input Required changes the require information from original author of the rules Rules Windows Pull request add/update windows related rules
#5674 opened Oct 2, 2025 by skaynum Loading…
Wsl rules Additional Data Needed Author Input Required changes the require information from original author of the rules Rules Windows Pull request add/update windows related rules
#5668 opened Oct 1, 2025 by Liran017 Loading…
feat: ppl protected lsass dump via wsass.exe Rules Windows Pull request add/update windows related rules
#5652 opened Sep 16, 2025 by swachchhanda000 Loading…
feat: goldendMSA attack 2nd Review Needed PR need a second approval Rules Windows Pull request add/update windows related rules
#5646 opened Sep 11, 2025 by swachchhanda000 Loading…
feat: susp service priv esc and phantom hijack rules Review Needed The PR requires review Rules Windows Pull request add/update windows related rules
#5643 opened Sep 8, 2025 by swachchhanda000 Loading…
Added new linux rule 2nd Review Needed PR need a second approval Additional Data Needed Linux Pull request add/update linux related rules Rules
#5627 opened Aug 25, 2025 by tsale Loading… Sigma-December-Release
Duo2 Author Input Required changes the require information from original author of the rules Maintenance Related to additions and update of the repository features Rules Work In Progress Some changes are needed
#5626 opened Aug 25, 2025 by savvyspoon Loading…
ProTip! Add no:assignee to see everything that’s not assigned.