Ruben Groenewoud
|
294e8292b8
|
[Rule Tuning] Security File Access via Common Utilities (#5453)
* [Rule Tuning] Security File Access via Common Utilities
* ++
---------
Co-authored-by: Samirbous <64742097+Samirbous@users.noreply.github.com>
|
2025-12-15 10:25:36 +01:00 |
|
shashank-elastic
|
059d7efa25
|
Prep for Release 9.0 (#4550)
|
2025-03-20 20:32:07 +05:30 |
|
Jonhnathan
|
0268daa17d
|
[Rule Tuning] Tighten Up Elastic Defend Indexes - Linux (#4446)
|
2025-02-05 15:25:45 -03:00 |
|
Ruben Groenewoud
|
52d33c12b8
|
[Rule Tuning] Linux DR Tuning - Part 2 (#4417)
|
2025-01-29 10:34:13 +01:00 |
|
Mika Ayenson
|
fe8c81d762
|
[FR] Generate investigation guides (#4358)
|
2025-01-22 11:17:38 -06:00 |
|
Jonhnathan
|
e66bca73e0
|
[Rule Tuning] Linux 3rd Party EDR Support - Crowdstrike and S1 - 7 (#4349)
* [Rule Tuning] Linux 3rd Party EDR Support - Crowdstrike and S1 - 7
* Update rules/linux/discovery_process_capabilities.toml
Co-authored-by: Ruben Groenewoud <78494512+Aegrah@users.noreply.github.com>
---------
Co-authored-by: Ruben Groenewoud <78494512+Aegrah@users.noreply.github.com>
|
2025-01-09 11:28:21 -03:00 |
|
Ruben Groenewoud
|
43148a72f4
|
[New Rule] Security File Access via Common Utilities (#4243)
* [New Rule] Security File Access via Common Utilities
* [New Rule] Security File Access via Common Utilities
* Update discovery_security_file_access_via_common_utility.toml
|
2024-11-08 17:41:33 +01:00 |
|