We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
As a defender, when I'm working in Alerts/Dashboards/Hunt, I need Events table columns for event.module sigma:
':sigma:': - soc_timestamp - rule.name - event.severity_label - event_data.event.dataset - event_data.source.ip - event_data.source.port - event_data.destination.host - event_data.destination.port - event_data.process.executable - event_data.process.pid
The text was updated successfully, but these errors were encountered:
FEATURE: Add Events table columns for event.module sigma #12743
5ec3b83
Merge pull request #12751 from Security-Onion-Solutions/dougburks-pat…
7b4e207
…ch-1 FEATURE: Add Events table columns for event.module sigma #12743
Tested and verified.
Alerts:
Dashboards:
Sorry, something went wrong.
dougburks
No branches or pull requests
As a defender, when I'm working in Alerts/Dashboards/Hunt, I need Events table columns for event.module sigma:
The text was updated successfully, but these errors were encountered: