Detections
Explore public detection logic contributed by the community across SIEM and rule languages.
1 detection
Filters
Last updated
All Time
Detection languages
1
Contributors
1
Categories
1
1
1
Platforms
1
Products / Services
10,366
9,516
6,509
4,363
3,687
MITRE Techniques
1
1
Detects creation of a macOS LaunchAgent plist referencing a suspicious temp path or unrecognized vendor bundle identifier, consistent with the botking implant's macOS persistence mechanism.
