File tree Expand file tree Collapse file tree 2 files changed +12
-2
lines changed
Expand file tree Collapse file tree 2 files changed +12
-2
lines changed Original file line number Diff line number Diff line change 22creation_date = " 2025/02/26"
33integration = [" endpoint" ]
44maturity = " production"
5- updated_date = " 2025/04/07 "
5+ updated_date = " 2025/12/03 "
66
77[rule ]
88author = [" Elastic" ]
@@ -128,6 +128,11 @@ id = "T1546"
128128name = " Event Triggered Execution"
129129reference = " https://attack.mitre.org/techniques/T1546/"
130130
131+ [[rule .threat .technique .subtechnique ]]
132+ id = " T1546.018"
133+ name = " Python Startup Hooks"
134+ reference = " https://attack.mitre.org/techniques/T1546/018/"
135+
131136[[rule .threat .technique ]]
132137id = " T1574"
133138name = " Hijack Execution Flow"
Original file line number Diff line number Diff line change 22creation_date = " 2025/02/26"
33integration = [" endpoint" ]
44maturity = " production"
5- updated_date = " 2025/04/07 "
5+ updated_date = " 2025/12/03 "
66
77[rule ]
88author = [" Elastic" ]
@@ -123,6 +123,11 @@ id = "T1546"
123123name = " Event Triggered Execution"
124124reference = " https://attack.mitre.org/techniques/T1546/"
125125
126+ [[rule .threat .technique .subtechnique ]]
127+ id = " T1546.018"
128+ name = " Python Startup Hooks"
129+ reference = " https://attack.mitre.org/techniques/T1546/018/"
130+
126131[[rule .threat .technique ]]
127132id = " T1574"
128133name = " Hijack Execution Flow"
You can’t perform that action at this time.
0 commit comments