Rule Info
Name
Suspicious Inbox Manipulation Rules
Author
Mark Morowczynski '@markmorow', Gloria Lee, '@gleeiamglo'
Description
Detects suspicious rules that delete or move messages or folders are set on a user's inbox.
Date
2023-09-03 00:00:00
Modified
None
Id
ceb55fd0-726e-4656-bf4e-b585b7f7d572
Tags
attack.t1140 attack.defense-evasion DEMO
Type
Community Rule
Link to Public Repo
Rule History
Author
Title
Date
Commit
Nasreddine Bencherchali
Merge PR #4950 from @nasbench - Comply With v2 Spec Changes
2024-08-12
github-actions[bot]
Merge PR #4891 from @nasbench - Promote older rules status from `experimental` to `test`
2024-07-01
Mark Morowczynski
Merge PR #4423 from @MarkMorow - Add Azure AD Identity Protection Rules
2023-09-06