Detection rules › By eventMicrosoft-Windows-Security-Auditing event 47024 detection rules reference this event. View event page.Sigma (1)Suspicious Scheduled Task Update severity high T1053.005 Elastic (1)Unusual Scheduled Task Update T1053, T1053.005 Splunk (2)Windows Scheduled Task with Suspicious Command T1053.005 Windows Scheduled Task with Suspicious Name T1053.005