Detection rules › By event

Microsoft-Windows-Security-Auditing Event ID 5137

11 detection rules reference this event. View event page.

Sigma (1)

Elastic (5)

Splunk (5)