Hunting For Registry Run Key Persistence

Detect MITRE ATT&CK T1547.001 registry Run key persistence by analyzing Sysmon Event ID 13 logs and registry queries to identify malicious auto-start entries.

gabrielmoreira Updated 17 repo stars

File contents

gabrielmoreira/agent-skills-mirror/tree/main/mirrors/repos/xalgord@xalgorix/internal/tools/skills/data/threat-hunting/hunting-for-registry-run-key-persistence commit 482faf674b

Frequently asked questions

npx skillmds@latest add gabrielmoreira/hunting-for-registry-run-key-persistence