Detection rules › By event

Microsoft-Windows-Sysmon Event ID 11

384 detection rules reference this event. View event page.

Sigma (235)

Elastic (32)

Splunk (94)

Kusto (16)

YARA-L (7)