Terrance DeJesus
|
deab1c0161
|
[Rule Tuning] Change event.dataset to data_stream.dataset (#5943)
* [Rule Tuning] Change event.dataset to data_stream.dataset
* updating ESQL field names
|
2026-04-10 12:27:52 -04:00 |
|
Mika Ayenson, PhD
|
8993d1450b
|
[Rule Tuning] Add Supplemental Mitre Mappings (#5876)
---------
Co-authored-by: Ruben Groenewoud <78494512+Aegrah@users.noreply.github.com>
Co-authored-by: Isai <59296946+imays11@users.noreply.github.com>
Co-authored-by: terrancedejesus <terrance.dejesus@elastic.co>
Co-authored-by: Jonhnathan <26856693+w0rk3r@users.noreply.github.com>
Co-authored-by: eric-forte-elastic <eric.forte@elastic.co>
|
2026-04-01 09:12:42 -05:00 |
|
Ruben Groenewoud
|
4408ea014b
|
[Rule Tuning] Removing host.os.type from K8s Rules (#5577)
|
2026-01-23 10:41:20 +01:00 |
|
shashank-elastic
|
7175b3ab06
|
Add investigation guides for detection rules (#4886)
|
2025-07-08 00:25:42 +05:30 |
|
Ruben Groenewoud
|
2c4157066f
|
[New Rule] Kubernetes Forbidden Creation Request (#4843)
|
2025-06-30 10:20:33 +02:00 |
|