Outsmarting the Watchdog: How can Adversaries evade Sigma Rule Detection during a Kerberos Golden Ticket Attack?
Signature-based threat detection helps to timely detect malicious behavior. This blog post shows that during an exemplary cyber attack, 99.99% of alerts generated using the well-known Sigma rules can be successfully evaded using fairly straight-forward techniques.
9 minutes to read
Leon Vogel, Louis Hackländer-Jansen