Build out a Sigma rule feed from LOLRMM.io at LOLRMM/detections/sigma at main · magicsword-io/LOLRMM · GitHub
please.
1 Like
I’ll make this / set it up so it’s free like the others - I have most of the code already done as I was working on it myself
2 Likes
I created the LOLRMM domains as a lookup list with detections over here: Automated Lookup Lists for the Community - RMMLOL To Start
I’ve got one for the processes from LOLRMM, but it’ll have to be a standard rule, I can’t make a lookup list for that.