Detections

Explore public detection logic contributed by the community across SIEM and rule languages.

1 detection

Detects the IntelSoftwareUpdaterV8.exe installer masquerading as a legitimate updater, bundling Python 3.11 runtime and dropping to Microsoft-looking WindowsApps path used by UNC5142 DeviceManager RAT
avatar
Duo Tech@duotech
avatar
Detections.ai Community
2 months ago
000