Disabling Multi Factor Authentication

Rule Info

Name
Disabling Multi Factor Authentication
Author
Splunk Threat Research Team (original rule), Harjot Singh @cyb3rjy0t (sigma rule)
Description
Detects disabling of Multi Factor Authentication.
Date
2023-09-18 00:00:00
Modified
None
Id
60de9b57-dc4d-48b9-a6a0-b39e0469f876
Tags
attack.persistence attack.t1556
Type
Community Rule

Rule History

Author
Title
Date
Commit
Nasreddine Bencherchali
Merge PR #4950 from @nasbench - Comply With v2 Spec Changes
2024-08-12
github-actions[bot]
Merge PR #4942 from @nasbench - promote older rules status from experimental to test
2024-08-01
Nasreddine Bencherchali
Merge PR #4476 from @nasbench - re-organize cloud folder and other things
2023-10-12
Sanjay Govind
Merge PR #4450 from @sanjay900 - Fix Typo
2023-09-19
cyb3rjy0t
Merge PR #4401 from @cyb3rjy0t - Add New O365 Related Rules
2023-09-18