Activity
Update execution_sap_netweaver_jsp_webshell.toml
Update execution_sap_netweaver_jsp_webshell.toml
Lock versions for releases: 8.14,8.15,8.16,8.17,8.18,9.0
Lock versions for releases: 8.14,8.15,8.16,8.17,8.18,9.0
Update and rename discovery_manual_mount_discovery_via_exports.toml t…
Update and rename discovery_manual_mount_discovery_via_exports.toml t…
[New Rule] Git Repository or File Download to Suspicious Directory
[New Rule] Git Repository or File Download to Suspicious Directory
[New Rule] Manual Mount Discovery via /etc/exports
[New Rule] Manual Mount Discovery via /etc/exports
Update rules/linux/discovery_proc_maps_read.toml
Update rules/linux/discovery_proc_maps_read.toml
Update rules/linux/credential_access_manual_memory_dumping.toml
Update rules/linux/credential_access_manual_memory_dumping.toml
Update rules/linux/privilege_escalation_docker_release_file_creation.…
Update rules/linux/privilege_escalation_docker_release_file_creation.…
[New Rule] Docker Release File Creation
[New Rule] Docker Release File Creation
[New Rule] Manual Memory Dumping via Proc Filesystem
[New Rule] Manual Memory Dumping via Proc Filesystem
Update rules/linux/discovery_proc_maps_read.toml
Update rules/linux/discovery_proc_maps_read.toml
Update discovery_proc_maps_read.toml
Update discovery_proc_maps_read.toml
[FN Tuning] Suspicious /proc/maps Discovery
[FN Tuning] Suspicious /proc/maps Discovery
[New Rule] Potential Linux Tunneling and/or Port Forwarding via SSH O…
[New Rule] Potential Linux Tunneling and/or Port Forwarding via SSH O…
Merge branch 'double_bump_check_automation' of github.com:elastic/det…
Merge branch 'double_bump_check_automation' of github.com:elastic/det…
Merge branch 'main' into double_bump_check_automation
Merge branch 'main' into double_bump_check_automation
Re-restrict to main
Re-restrict to main
Locked versions for releases: 8.14,8.15,8.16,8.17,8.18,9.0
Locked versions for releases: 8.14,8.15,8.16,8.17,8.18,9.0