Skip to content

Add AMOS Stealer Analytic#3492

Merged
patel-bhavin merged 9 commits into
developfrom
amos-stealer
May 5, 2025
Merged

Add AMOS Stealer Analytic#3492
patel-bhavin merged 9 commits into
developfrom
amos-stealer

Conversation

@nasbench

Copy link
Copy Markdown
Contributor

This PR changes the following.

New Analytics

  • macOS AMOS Stealer - Virtual Machine Check Activity

Updated Analytics

  • MacOS - Re-opened Applications - Fixed typos in FP section
  • MacOS LOLbin - Add missing datasource entry

@nasbench nasbench added this to the v5.5.0 milestone Apr 25, 2025
@nasbench nasbench marked this pull request as ready for review April 25, 2025 11:39
Comment thread detections/endpoint/macos_amos_stealer___virtual_machine_check_activity.yml Outdated
@nasbench nasbench requested a review from patel-bhavin May 5, 2025 13:06
Comment thread detections/endpoint/macos___re_opened_applications.yml Outdated
Comment thread detections/endpoint/macos_lolbin.yml Outdated
@patel-bhavin patel-bhavin merged commit d869952 into develop May 5, 2025
4 checks passed
@patel-bhavin patel-bhavin deleted the amos-stealer branch May 5, 2025 18:51
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants