Skip to content

Commit

Permalink
Update enumerate-network-filters-via-wfp-api.yml
Browse files Browse the repository at this point in the history
  • Loading branch information
jtothej committed Sep 14, 2024
1 parent a516554 commit afafcca
Showing 1 changed file with 1 addition and 4 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -6,10 +6,7 @@ rule:
- jakub.jozwiak@mandiant.com
scopes:
static: function
dynamic: call
att&ck:
- Impact::Data Manipulation::Transmitted Data Manipulation [T1565.002]
- Defense Evasion::Impair Defenses::Disable or Modify System Firewall [T1562.004]
dynamic: thread
references:
- https://learn.microsoft.com/en-us/windows/win32/api/fwpmu/nf-fwpmu-fwpmfilterenum0
- https://github.com/netero1010/EDRSilencer/blob/main/EDRSilencer.c
Expand Down

0 comments on commit afafcca

Please sign in to comment.