Detections

Explore public detection logic contributed by the community across SIEM and rule languages.

1 detection

Detects the msagent.sys signed kernel-mode rootkit driver used by the CoolClient backdoor (HoneyMyte/Mustang Panda)
avatar
Duo Tech@duotech
avatar
Detections.ai Community
2 months ago
005