Files
blue-team-tools/tools/sigma
Joshua Roys 2034d36677 Add support for Elastic EQL
The EQL backend supports translation of the "near" aggregation into
EQL sequences. Additionally, the es-rule backend now has a sibling
es-rule-eql backend that outputs EQL queries instead of qs.
2021-06-08 13:38:38 -04:00
..
2021-06-08 13:38:38 -04:00
2021-05-22 09:04:30 +02:00
2019-11-11 23:35:16 +01:00
2020-03-31 23:46:58 +02:00
2020-06-06 01:03:02 +02:00