Skip to content

Actions: elastic/detection-rules

Community

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
1,125 workflow runs
1,125 workflow runs

Filter by Event

Filter by Status

Filter by Branch

Filter by Actor

[Rule Tuning] Windows DR Tuning - 3
Community #1730: Pull request #3212 opened by w0rk3r
October 23, 2023 11:58 19s
October 23, 2023 11:58 19s
[New BBR] Tainted Kernel Module Load
Community #1729: Pull request #3211 opened by Aegrah
October 23, 2023 10:07 18s
October 23, 2023 10:07 18s
[Meta] Linux Rootkit Analysis & Rule dev
Community #1728: Issue #3210 opened by Aegrah
October 23, 2023 09:01 15s
October 23, 2023 09:01 15s
[Rule Tuning] Windows DR Tuning - 2
Community #1727: Pull request #3209 opened by w0rk3r
October 22, 2023 19:36 13s
October 22, 2023 19:36 13s
Update alert_suppression in rule schema
Community #1725: Pull request #3207 opened by brokensound77
October 19, 2023 20:18 11s
October 19, 2023 20:18 11s
Move Setup information into setup filed
Community #1724: Pull request #3206 opened by shashank-elastic
October 19, 2023 14:30 13s
October 19, 2023 14:30 13s
[FR] Cleanup saved_query references
Community #1723: Pull request #3205 opened by Mikaayenson
October 19, 2023 14:16 16s
October 19, 2023 14:16 16s
[FR] Updated typing-extensions dependency
Community #1722: Pull request #3204 opened by eric-forte-elastic
October 18, 2023 22:35 10s
October 18, 2023 22:35 10s
[Meta] Linux Investigation Guides - Part 1
Community #1721: Issue #3203 opened by Aegrah
October 18, 2023 12:49 13s
October 18, 2023 12:49 13s
[New Rule] Network Activity Detected via kworker
Community #1720: Pull request #3202 opened by Aegrah
October 18, 2023 11:21 16s
October 18, 2023 11:21 16s
[FR] Adding Support for missing_field_strategy Field in Alert Suppression
Community #1719: Pull request #3201 opened by terrancedejesus
October 17, 2023 18:13 14s
October 17, 2023 18:13 14s
Setup information for Linux Rules - Set8
Community #1718: Pull request #3200 opened by shashank-elastic
October 17, 2023 15:44 14s
October 17, 2023 15:44 14s
October 17, 2023 14:54 14s
[Rule Tuning] Windows DR Tuning - 1
Community #1716: Pull request #3198 opened by w0rk3r
October 17, 2023 11:01 13s
October 17, 2023 11:01 13s
October 17, 2023 03:42 11s
[Rule Tuning] Adjust Lucene queries to use Uppercase operators
Community #1714: Pull request #3196 opened by w0rk3r
October 16, 2023 19:39 16s
October 16, 2023 19:39 16s
Render the error message of failed validation as a string
Community #1713: Issue #3195 opened by brokensound77
October 16, 2023 19:01 14s
October 16, 2023 19:01 14s
[Rule Tuning] Update rules using NPC integration and non-ECS fields
Community #1712: Pull request #3194 opened by brokensound77
October 16, 2023 18:55 13s
October 16, 2023 18:55 13s
[New Rule] Add Living-off-the-Land (LotL) ProblemChild Rules
Community #1711: Pull request #3193 opened by terrancedejesus
October 16, 2023 17:32 16s
October 16, 2023 17:32 16s
[Bug] saved_query rule type not supported by detection-rules CLI
Community #1710: Issue #3192 opened by Mikaayenson
October 16, 2023 16:43 15s
October 16, 2023 16:43 15s
[FR] Add suppression for missing fields option
Community #1709: Issue #3191 opened by Mikaayenson
October 16, 2023 13:37 13s
October 16, 2023 13:37 13s
Setup information for Linux Rules - Set7
Community #1708: Pull request #3190 opened by shashank-elastic
October 16, 2023 12:12 12s
October 16, 2023 12:12 12s
Setup information for Linux Rules - Set6
Community #1707: Pull request #3189 opened by shashank-elastic
October 16, 2023 12:00 15s
October 16, 2023 12:00 15s
[Rule Tuning] Cobalt Strike Command and Control Beacon
Community #1706: Issue #3187 opened by ChestoOfGlen
October 16, 2023 00:20 12s
October 16, 2023 00:20 12s
ProTip! You can narrow down the results and go further in time using created:<2023-10-16 or the other filters available.