Skip to content

Actions: elastic/detection-rules

Community

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
1,172 workflow runs
1,172 workflow runs

Filter by Event

Filter by Status

Filter by Branch

Filter by Actor

[FR] Support Alert Suppression for EQL Sequences in 8.18
Community #2778: Issue #4326 opened by Mikaayenson
December 19, 2024 16:11 9s
December 19, 2024 16:11 9s
[New Rule] Kernel Object File Creation
Community #2777: Pull request #4325 opened by Aegrah
December 19, 2024 15:25 12s
December 19, 2024 15:25 12s
[Rule Tuning] Lookback Times for Okta Multiple Session and AWS KMS Retrieval Rules
Community #2776: Pull request #4324 opened by terrancedejesus
December 19, 2024 14:24 12s
December 19, 2024 14:24 12s
[Fix] Updating the hunting library
Community #2775: Pull request #4323 opened by Aegrah
December 19, 2024 10:24 18s
December 19, 2024 10:24 18s
[New Hunt] Persistence via Container
Community #2774: Pull request #4322 opened by Aegrah
December 19, 2024 10:13 15s
December 19, 2024 10:13 15s
[New Hunt] Persistence via DPKG/RPM Package
Community #2773: Pull request #4321 opened by Aegrah
December 19, 2024 10:04 14s
December 19, 2024 10:04 14s
[New Hunt] Persistence via Web Shells
Community #2772: Pull request #4320 opened by Aegrah
December 19, 2024 09:53 14s
December 19, 2024 09:53 14s
[New Hunt & Tuning] Persistence via LKMs
Community #2771: Pull request #4319 opened by Aegrah
December 19, 2024 09:44 18s
December 19, 2024 09:44 18s
[New Hunt] Persistence via Dynamic Linker Hijacking
Community #2770: Pull request #4318 opened by Aegrah
December 19, 2024 09:20 18s
December 19, 2024 09:20 18s
[New Hunt] Linux PAM Persistence
Community #2769: Pull request #4317 opened by Aegrah
December 19, 2024 08:57 18s
December 19, 2024 08:57 18s
[Rule Tuning] persistence_via_cron
Community #2768: Issue #4316 opened by farbod-sec
December 19, 2024 03:48 10s
December 19, 2024 03:48 10s
December 17, 2024 22:43 14s
[New Rule] Adding Coverage for AWS S3 Unauthenticated Object Upload by Rare Source
Community #2766: Pull request #4314 opened by terrancedejesus
December 17, 2024 21:11 15s
December 17, 2024 21:11 15s
[New Rule] Adding Coverage for AWS S3 Unauthenticated Bucket Listing by Rare Source
Community #2765: Pull request #4313 opened by terrancedejesus
December 17, 2024 20:48 15s
December 17, 2024 20:48 15s
December 17, 2024 17:29 10s
Include all historical rule versions in the prebuilt rules package
Community #2763: Issue #4311 opened by xcrzx
December 17, 2024 16:39 16s
December 17, 2024 16:39 16s
[Rule Tuning] Potential Persistence via File Modification
Community #2762: Pull request #4310 opened by Aegrah
December 17, 2024 09:16 13s
December 17, 2024 09:16 13s
[New Rule] Simple HTTP Web Server Connection
Community #2761: Pull request #4309 opened by Aegrah
December 17, 2024 09:05 9s
December 17, 2024 09:05 9s
[New Rule] Simple HTTP Web Server Creation
Community #2760: Pull request #4308 opened by Aegrah
December 17, 2024 08:59 16s
December 17, 2024 08:59 16s
[New Rule] Loadable Kernel Module Configuration File Creation
Community #2759: Pull request #4307 opened by Aegrah
December 17, 2024 08:49 14s
December 17, 2024 08:49 14s
[New Rule] Dynamic Linker (ld.so) Creation
Community #2758: Pull request #4306 opened by Aegrah
December 16, 2024 15:22 46s
December 16, 2024 15:22 46s
[New Rule] Unusual Preload Environment Variable Process Execution
Community #2757: Pull request #4305 opened by Aegrah
December 16, 2024 14:23 12s
December 16, 2024 14:23 12s
[Rule Tuning] Creation or Modification of Pluggable Authentication Mo…
Community #2756: Pull request #4304 opened by Aegrah
December 16, 2024 13:40 14s
December 16, 2024 13:40 14s
[New Rule] Unusual SSHD Child Process
Community #2755: Pull request #4303 opened by Aegrah
December 16, 2024 13:35 12s
December 16, 2024 13:35 12s
[New Rule] Pluggable Authentication Module Creation in Unusual Directory
Community #2754: Pull request #4302 opened by Aegrah
December 16, 2024 12:56 10s
December 16, 2024 12:56 10s