Detection rules › By event

Microsoft-Windows-Sysmon Event ID 11

387 detection rules reference this event. View event page.

Sigma (222)

Elastic (34)

Splunk (94)

Kusto (17)

YARA-L (20)