Skip to content

feat: Endpoint Hash RTAs March#24

Merged
traut merged 1 commit intomainfrom
march_batch_rtas_signed
Jun 20, 2025
Merged

feat: Endpoint Hash RTAs March#24
traut merged 1 commit intomainfrom
march_batch_rtas_signed

Conversation

@eric-forte-elastic
Copy link
Contributor

Summary

This PR adds a batch of hash based RTAs for various different Windows rules from hashes examined in March 2025.

Note: There are a few RTAs that do not have Techniques populated as the action taken by the malware at the time was considered too broad to fall into a specific technique and only has a tactic.

@eric-forte-elastic eric-forte-elastic self-assigned this Jun 18, 2025
@eric-forte-elastic eric-forte-elastic added the enhancement New feature or request label Jun 18, 2025
@eric-forte-elastic eric-forte-elastic marked this pull request as ready for review June 18, 2025 18:18
@traut traut merged commit 32655c1 into main Jun 20, 2025
6 checks passed
@traut traut deleted the march_batch_rtas_signed branch June 20, 2025 10:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants