Skip to content

Commit

Permalink
Update rules/integrations/endpoint/impact_elastic_ransomware_detected…
Browse files Browse the repository at this point in the history
….toml

Co-authored-by: Terrance DeJesus <[email protected]>
  • Loading branch information
Samirbous and terrancedejesus authored Dec 18, 2024
1 parent 4114261 commit 36e5e48
Showing 1 changed file with 0 additions and 1 deletion.
Original file line number Diff line number Diff line change
Expand Up @@ -40,7 +40,6 @@ Generally, our ransomware protection is tuned to have extremely low false positi
- Quickly identifying the compromised credentials is critical to remediate Ransomware attacks.
- Verify if there are any other alert types (Behavior or Memory Threat) associated with the same host or user or process within the same time.
### False positive analysis
- Installers and backup software, which can make a large number of modifications to documents (especially during a restore operation).
Expand Down

0 comments on commit 36e5e48

Please sign in to comment.