The Latest Addition to Turla’s Intelligence Gathering Apparatus | Google Cloud Blog
… Once fully deployed, these rules will be available under the Mandiant Frontline Threats, Mandiant Hunting and Mandiant Intel Emerging Threats rule packs: Archiver Extraction To Windows Startup Registry Write Registry Run Keys Registry Write to Run Registry Key Potential RDP File Write From Phishing… …