SigmaHQ/tools/config
2020-07-13 20:18:01 +00:00
..
generic Introduced dns_query log source category 2020-07-05 23:29:51 +02:00
mitre change to github 2020-02-28 16:56:48 +07:00
ala.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
arcsight-zeek.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
arcsight.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
carbon-black.yml clean IP subnet 2020-03-18 16:49:44 +07:00
crowdstrike.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
ecs-cloudtrail.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
ecs-dns.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
ecs-proxy.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
ecs-zeek-corelight.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
ecs-zeek-elastic-beats-implementation.yml zeek category update and minor field updates 2020-05-19 05:02:45 -04:00
elk-defaultindex-filebeat.yml docs: descriptions for source configs 2020-06-25 13:59:51 +02:00
elk-defaultindex-logstash.yml docs: descriptions for source configs 2020-06-25 13:59:51 +02:00
elk-defaultindex.yml docs: descriptions for source configs 2020-06-25 13:59:51 +02:00
elk-linux.yml docs: descriptions for source configs 2020-06-25 13:59:51 +02:00
elk-windows.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
elk-winlogbeat-sp.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
elk-winlogbeat.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
filebeat-defaultindex.yml Added ee-outliers backend 2020-05-08 10:18:35 +02:00
helk.yml merge 2020-03-19 11:02:10 +07:00
humio.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
limacharlie.yml change to github 2020-02-28 16:56:48 +07:00
logpoint-windows.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
logstash-defaultindex.yml Added ee-outliers backend 2020-05-08 10:18:35 +02:00
logstash-linux.yml Added ee-outliers backend 2020-05-08 10:18:35 +02:00
logstash-windows.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
logstash-zeek-default-json.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
netwitness.yml change to github 2020-02-28 16:56:48 +07:00
powershell-windows-all.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
powershell.yml Windows Defender rules and logsource 2020-06-28 10:55:32 +02:00
qradar.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
qualys.yml change to github 2020-02-28 16:56:48 +07:00
splunk-windows-index.yml change to github 2020-02-28 16:56:48 +07:00
splunk-windows.yml change to github 2020-02-28 16:56:48 +07:00
splunk-zeek.yml Squashed commit of the following: 2020-06-05 13:18:03 -04:00
stix-qradar.yml stix backend + mapping configurations for windows logs and qradar 2020-07-07 15:04:16 +03:00
stix-windows.yml - IntegrityLevel mapping to integritylevel 2020-07-08 19:37:24 +03:00
stix.yml DestinationPort to network-traffic:dst_port mapping fix 2020-07-08 14:31:04 +03:00
sumologic.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
thor.yml fix: duplicate wrong old key 2020-07-06 17:14:59 +02:00
winlogbeat-modules-enabled.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
winlogbeat-old.yml Added Windows NTLM log source + fixes 2020-07-02 23:20:36 +02:00
winlogbeat.yml Added AppLocker log source 2020-07-13 20:18:01 +00:00