Exact rules name this CVE ID. Product rules name an affected product in their title. Related rules cover techniques used by actors who exploited this CVE. Showing the most relevant matches; the complete related set is on the full drill-down.
producthighLoading of Kernel Module via Insmod
producthighLiveKD Kernel Memory Dump File Created
producthighKernel Memory Dump Via LiveKD
producthighSuspicious Kernel Dump Using Dtrace
producthighPUA - Kernel Driver Utility (KDU) Execution
producthighCodeIntegrity - Revoked Kernel Driver Loaded
Show all 15 top matches
producthighCodeIntegrity - Unsigned Kernel Module Loaded
producthighCodeIntegrity - Unmet WHQL Requirements For Loaded Kernel Module
productcriticalHackTool - Windows Credential Editor (WCE) Execution
productcriticalWindows Credential Editor Registry
producthighOpenCanary - MSSQL Login Attempt Via Windows Authentication
producthighWindows LAPS Credential Dump From Entra ID
producthighTamper Windows Defender - PSClassic
producthighTamper Windows Defender Remove-MpPreference - ScriptBlockLogging
producthighTamper Windows Defender - ScriptBlockLogging