Quick Share Process Crash - Possible V6 Use-After-Free Exploitation
This rule monitors for recurring application crashes involving 'NearShare.exe', 'NearbySharing.exe', or 'quickshare.exe' processes. Frequent crashes of these components may indicate instability, misconfiguration, or an attempt to exploit vulnerabilities within these specific file sharing services.
Microsoft Sentinel (KQL)

