Ruben Groenewoud
|
066096f766
|
[Rule Tuning] Linux DR Tuning - 2 (#5481)
* [Rule Tuning] Linux DR Tuning - 2
* Update command_and_control_linux_proxychains_activity.toml
|
2026-01-06 17:00:55 +01:00 |
|
Ruben Groenewoud
|
37e18af7a5
|
[Rule Tuning] Adds Crowdstrike Compatibility to Linux Process Rules (#5232)
* First batch
* Second batch
* Batch 2
|
2025-11-10 16:03:39 +01:00 |
|
shashank-elastic
|
059d7efa25
|
Prep for Release 9.0 (#4550)
|
2025-03-20 20:32:07 +05:30 |
|
Jonhnathan
|
0268daa17d
|
[Rule Tuning] Tighten Up Elastic Defend Indexes - Linux (#4446)
|
2025-02-05 15:25:45 -03:00 |
|
Ruben Groenewoud
|
fed7b216d5
|
[Rule Tuning] Linux DR Tuning - Part 1 (#4416)
|
2025-01-28 14:43:00 +01:00 |
|
Mika Ayenson
|
fe8c81d762
|
[FR] Generate investigation guides (#4358)
|
2025-01-22 11:17:38 -06:00 |
|
Jonhnathan
|
0fc83fe815
|
[Rule Tuning] Linux 3rd Party EDR Support - Crowdstrike and S1 - 3 (#4343)
* [Rule Tuning] Linux 3rd Party EDR Support - Crowdstrike and S1 - 3
* .
* Update rules/linux/command_and_control_ip_forwarding_activity.toml
Co-authored-by: Ruben Groenewoud <78494512+Aegrah@users.noreply.github.com>
---------
Co-authored-by: Ruben Groenewoud <78494512+Aegrah@users.noreply.github.com>
|
2025-01-09 10:35:58 -03:00 |
|
Ruben Groenewoud
|
40118186fb
|
[New Rule] IPv4/IPv6 Forwarding Activity (#4240)
Co-authored-by: shashank-elastic <91139415+shashank-elastic@users.noreply.github.com>
|
2024-11-08 17:06:07 +01:00 |
|