diff --git a/tools/sigma/backends/elasticsearch.py b/tools/sigma/backends/elasticsearch.py index 5919528bd..6cb6d2a0b 100644 --- a/tools/sigma/backends/elasticsearch.py +++ b/tools/sigma/backends/elasticsearch.py @@ -185,7 +185,7 @@ class ElasticsearchQuerystringBackend(ElasticsearchWildcardHandlingMixin, Single identifier = "es-qs" active = True - reEscape = re.compile("([\s+\\-=!(){}\\[\\]^\"~:/]|(?