.. |
ala.py
|
Improved test coverage
|
2020-06-13 01:11:08 +02:00 |
arcsight.py
|
Added Humio, Crowdstrike, Corelight
|
2020-05-08 13:41:52 +03:00 |
base.py
|
Cleanup: removal of corelight_* backends
|
2020-05-24 22:41:38 +02:00 |
carbonblack.py
|
Add parentheses about field list groups in CB
|
2020-06-11 15:33:02 +02:00 |
csharp.py
|
comments for usage
|
2020-04-11 15:47:23 +02:00 |
data.py
|
Moved Sysmon schema XML from contrib directory into module
|
2019-03-16 00:59:29 +01:00 |
discovery.py
|
Added Humio, Crowdstrike, Corelight
|
2020-05-08 13:41:52 +03:00 |
ee-outliers.py
|
Updated author reference in license
|
2020-05-11 11:47:56 +02:00 |
elasticsearch.py
|
Add more Options for XPackWatcherBackend (Elasticsearch)
|
2020-06-09 20:57:26 +02:00 |
exceptions.py
|
Changed copyright notices accordingly
|
2018-07-24 00:01:16 +02:00 |
graylog.py
|
Graylog backend now derived from es-qs
|
2019-11-02 22:56:01 +01:00 |
humio.py
|
Added Humio, Crowdstrike, Corelight
|
2020-05-08 13:41:52 +03:00 |
limacharlie.py
|
Added Humio, Crowdstrike, Corelight
|
2020-05-08 13:41:52 +03:00 |
logiq.py
|
Fixes
|
2020-04-08 23:43:46 +02:00 |
logpoint.py
|
Default configurations for backends
|
2019-11-03 23:32:50 +01:00 |
mdatp.py
|
Updating the mdatp backend file as it is currently impossible to set an ActionType as there is no mapping to EventType
|
2020-06-30 14:49:29 +01:00 |
misc.py
|
Conditional field mapping for null values
|
2019-04-25 23:24:05 +02:00 |
mixins.py
|
Using rule ids as Kibana object id
|
2020-01-30 11:30:01 +01:00 |
netwitness.py
|
Default configurations for backends
|
2019-11-03 23:32:50 +01:00 |
powershell.py
|
Default configurations for backends
|
2019-11-03 23:32:50 +01:00 |
qradar.py
|
Fixed undefined value in exception handling
|
2020-04-08 22:28:47 +02:00 |
qualys.py
|
Default configurations for backends
|
2019-11-03 23:32:50 +01:00 |
splunk.py
|
Cleanup: removal of corelight_* backends
|
2020-05-24 22:41:38 +02:00 |
sql.py
|
Remove unused function
|
2020-05-30 01:57:06 +02:00 |
sqlite.py
|
Remove unused function
|
2020-05-30 01:57:06 +02:00 |
stix.py
|
Custom STIX object "x-sigma" for fields that missing mapping, so the pattern is STIX valid
|
2020-07-08 14:09:26 +03:00 |
sumologic.py
|
Default configurations for backends
|
2019-11-03 23:32:50 +01:00 |
tools.py
|
Conditional field mapping for null values
|
2019-04-25 23:24:05 +02:00 |