1200KM / tag
attack.t1059.004 — sigma-tag tag
15 related reference pages for sigma-tag: attack.t1059.004.
Meaning and evidence boundary
Navigation membership is based on explicit metadata in this pinned module, not a claim of detection effectiveness or live validation.
Related pages
- AWS EC2 Startup Shell Script Change · sigma-rule
- BPFtrace Unsafe Option Usage · sigma-rule
- Equation Group Indicators · sigma-rule
- Interactive Bash Suspicious Children · sigma-rule
- JexBoss Command Sequence · sigma-rule
- Linux Reverse Shell Indicator · sigma-rule
- Nohup Execution · sigma-rule
- Potential Abuse of Linux Magic System Request Key · sigma-rule
- Script Interpreter Spawning Credential Scanner - Linux · sigma-rule
- Shell Invocation via Env Command - Linux · sigma-rule
- Suspicious Activity in Shell Commands · sigma-rule
- Suspicious Commands Linux · sigma-rule
- Suspicious Download and Execute Pattern via Curl/Wget · sigma-rule
- Suspicious Filename with Embedded Base64 Commands · sigma-rule
- Suspicious Reverse Shell Command Line · sigma-rule
Connected ecosystem references
Pinned research references. No browser attack runner, live simulation result or validated detector is asserted. Source mappings and validation limits are preserved. ATT&CK / Atomic provenance · Detection provenance.