PrinterNightmare Mimikatz Driver Name (ba6b9e43-1d45-4d3c-a504-1043a64c8469)
Detects static QMS 810 and mimikatz driver name used by Mimikatz as exploited in CVE-2021-1675 and CVE-2021-34527
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
User Execution - T1204 (8c32eb4d-805f-4fc5-bf60-c4d476c131b5) | Attack Pattern | PrinterNightmare Mimikatz Driver Name (ba6b9e43-1d45-4d3c-a504-1043a64c8469) | Sigma-Rules | 1 |