Weak or Abused Passwords In CLI — Detection Rule

Detects weak passwords or often abused passwords (seen used by threat actors) via the CLI. An example would be a threat actor creating a new user via the net command and providing the password inline

Read the full analysis on IntelFusions