Ruben Groenewoud
|
37e18af7a5
|
[Rule Tuning] Adds Crowdstrike Compatibility to Linux Process Rules (#5232)
* First batch
* Second batch
* Batch 2
|
2025-11-10 16:03:39 +01:00 |
|
shashank-elastic
|
7175b3ab06
|
Add investigation guides for detection rules (#4886)
|
2025-07-08 00:25:42 +05:30 |
|
Ruben Groenewoud
|
8b08795e00
|
[New Rule] Suspicious Kernel Feature Activity (#4676)
|
2025-05-06 17:13:24 +05:30 |
|