Mika Ayenson
|
fe8c81d762
|
[FR] Generate investigation guides (#4358)
|
2025-01-22 11:17:38 -06:00 |
|
Jonhnathan
|
2b6116e0ce
|
[Rule Tuning] 3rd Party EDR - Add Crowdstrike FDR support - 3 (#4222)
|
2024-11-04 11:55:04 -03:00 |
|
shashank-elastic
|
275c7288a3
|
Add testcase to check for related_integrations based on index (#4096)
|
2024-10-22 00:17:30 +05:30 |
|
Jonhnathan
|
2c07e88c07
|
[Rule Tuning] Fix double bumps caused by Windows Integration Update (#4156)
|
2024-10-15 23:57:44 +05:30 |
|
Jonhnathan
|
f5069763b6
|
[Rule Tuning] Add System tag to DRs (#3968)
* [Rule Tuning] Add System tag to DRs
* bump
|
2024-08-09 11:14:33 -03:00 |
|
shashank-elastic
|
dce5bbd904
|
Update Rule minstack (#3925)
|
2024-07-25 17:45:55 +05:30 |
|
shashank-elastic
|
b66d6e06aa
|
Fix Double Bump For Rule Microsoft Management Console File from Unusual Path (#3878)
|
2024-07-09 17:59:51 +05:30 |
|
Samirbous
|
17a07020f3
|
[New] Microsoft Management Console File from Unusual Path (#3834)
* [New] Windows Script Execution via MMC Console File
* Update execution_via_mmc_console_file_unusual_path.toml
* Update execution_via_mmc_console_file_unusual_path.toml
* Update rules/windows/execution_via_mmc_console_file_unusual_path.toml
* Update execution_via_mmc_console_file_unusual_path.toml
* Update execution_via_mmc_console_file_unusual_path.toml
---------
Co-authored-by: Jonhnathan <26856693+w0rk3r@users.noreply.github.com>
|
2024-06-27 11:32:45 +01:00 |
|