.. |
generic
|
Introduced dns_query log source category
|
2020-07-05 23:29:51 +02:00 |
mitre
|
+ Adding Mitre Sub-Techniques and python update script to fetch latest Pre, Enterprise & Mobile Tactics and Techniques from Mitre CTI
|
2020-08-13 10:24:44 +01:00 |
ala.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
arcsight-zeek.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
arcsight.yml
|
Added AppLocker log source
|
2020-07-13 20:41:54 +00:00 |
carbon-black.yml
|
Change mapped Image to path
|
2020-08-17 15:05:44 +07:00 |
crowdstrike.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
ecs-cloudtrail.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
ecs-dns.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
ecs-proxy.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
ecs-zeek-corelight.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
ecs-zeek-elastic-beats-implementation.yml
|
zeek category update and minor field updates
|
2020-05-19 05:02:45 -04:00 |
elk-defaultindex-filebeat.yml
|
docs: descriptions for source configs
|
2020-06-25 13:59:51 +02:00 |
elk-defaultindex-logstash.yml
|
docs: descriptions for source configs
|
2020-06-25 13:59:51 +02:00 |
elk-defaultindex.yml
|
docs: descriptions for source configs
|
2020-06-25 13:59:51 +02:00 |
elk-linux.yml
|
docs: descriptions for source configs
|
2020-06-25 13:59:51 +02:00 |
elk-windows.yml
|
Added AppLocker log source
|
2020-07-13 20:32:03 +00:00 |
elk-winlogbeat-sp.yml
|
Added AppLocker log source
|
2020-07-13 20:45:30 +00:00 |
elk-winlogbeat.yml
|
Added AppLocker log source
|
2020-07-13 20:44:03 +00:00 |
filebeat-defaultindex.yml
|
Added ee-outliers backend
|
2020-05-08 10:18:35 +02:00 |
helk.yml
|
merge
|
2020-03-19 11:02:10 +07:00 |
humio.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
limacharlie.yml
|
change to github
|
2020-02-28 16:56:48 +07:00 |
logpoint-windows.yml
|
Added AppLocker log source
|
2020-07-13 20:46:49 +00:00 |
logstash-defaultindex.yml
|
Added ee-outliers backend
|
2020-05-08 10:18:35 +02:00 |
logstash-linux.yml
|
Added ee-outliers backend
|
2020-05-08 10:18:35 +02:00 |
logstash-windows.yml
|
Added AppLocker log source
|
2020-07-13 20:48:06 +00:00 |
logstash-zeek-default-json.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
netwitness.yml
|
change to github
|
2020-02-28 16:56:48 +07:00 |
powershell-windows-all.yml
|
Added AppLocker log source
|
2020-07-13 20:30:02 +00:00 |
powershell.yml
|
Added AppLocker log source
|
2020-07-13 20:29:13 +00:00 |
qradar.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
qualys.yml
|
change to github
|
2020-02-28 16:56:48 +07:00 |
splunk-windows-index.yml
|
change to github
|
2020-02-28 16:56:48 +07:00 |
splunk-windows.yml
|
Added AppLocker log source
|
2020-07-13 20:27:52 +00:00 |
splunk-zeek.yml
|
Squashed commit of the following:
|
2020-06-05 13:18:03 -04:00 |
stix-linux.yml
|
STIX Support keywords (value without field)
|
2020-07-28 18:52:02 +03:00 |
stix-qradar.yml
|
stix backend + mapping configurations for windows logs and qradar
|
2020-07-07 15:04:16 +03:00 |
stix-windows.yml
|
extension should use '..'
|
2020-07-26 12:16:48 +03:00 |
stix.yml
|
STIX Support keywords (value without field)
|
2020-07-28 18:52:02 +03:00 |
sumologic.yml
|
Added Windows NTLM log source + fixes
|
2020-07-02 23:20:36 +02:00 |
thor.yml
|
Added AppLocker log source
|
2020-07-13 20:23:42 +00:00 |
winlogbeat-modules-enabled.yml
|
Revert "Ref #933 - Added windows Process Creation to config"
|
2020-07-16 14:30:17 +02:00 |
winlogbeat-old.yml
|
Added AppLocker log source
|
2020-07-13 20:20:28 +00:00 |
winlogbeat.yml
|
Revert "Ref #933 - Added windows Process Creation to config"
|
2020-07-16 14:30:17 +02:00 |