Skip to content

Actions: elastic/detection-rules

Community

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
1,100 workflow runs
1,100 workflow runs

Filter by Event

Filter by Status

Filter by Branch

Filter by Actor

[New Rule] Suspicious Usage of bpf_probe_write_user Helper
Community #2869: Pull request #4426 opened by Aegrah
January 28, 2025 11:14 11s
January 28, 2025 11:14 11s
[Rule Tuning] December-January AWS Rule Tuning
Community #2868: Pull request #4425 opened by terrancedejesus
January 27, 2025 20:26 12s
January 27, 2025 20:26 12s
January 27, 2025 17:14 10s
[Rule Tuning] Linux DR Tuning - Part 6
Community #2866: Pull request #4423 opened by Aegrah
January 27, 2025 10:59 14s
January 27, 2025 10:59 14s
[Rule Tuning] Linux DR Tuning - Part 5
Community #2865: Pull request #4422 opened by Aegrah
January 24, 2025 16:30 13s
January 24, 2025 16:30 13s
[Rule Tuning] Linux DR Tuning - Part 4
Community #2864: Pull request #4421 opened by Aegrah
January 24, 2025 15:52 10s
January 24, 2025 15:52 10s
[Rule Tuning] Linux DR Tuning - Part 3
Community #2863: Pull request #4420 opened by Aegrah
January 24, 2025 15:27 11s
January 24, 2025 15:27 11s
Enable Smart Limits for Rule Versions
Community #2862: Pull request #4419 opened by shashank-elastic
January 24, 2025 14:12 15s
January 24, 2025 14:12 15s
[Tuning] Unusual Instance Metadata Service (IMDS) API Request
Community #2861: Pull request #4418 opened by Samirbous
January 24, 2025 12:52 12s
January 24, 2025 12:52 12s
[Rule Tuning] Linux DR Tuning - Part 2
Community #2860: Pull request #4417 opened by Aegrah
January 24, 2025 10:39 16s
January 24, 2025 10:39 16s
[Rule Tuning] Linux DR Tuning - Part 1
Community #2859: Pull request #4416 opened by Aegrah
January 24, 2025 09:48 12s
January 24, 2025 09:48 12s
Fix S1 minstack version
Community #2858: Pull request #4415 opened by shashank-elastic
January 23, 2025 05:15 11s
January 23, 2025 05:15 11s
[FR] Add Remaining Guides
Community #2857: Pull request #4412 opened by Mikaayenson
January 22, 2025 20:32 16s
January 22, 2025 20:32 16s
[Rule Tuning] Improve Detection Compatibility with Non-English Logs
Community #2856: Pull request #4410 opened by w0rk3r
January 22, 2025 17:56 15s
January 22, 2025 17:56 15s
[New Hunt] Adding Hunting Query for IAM Unusual Default Aviatrix Role Activity
Community #2855: Pull request #4409 opened by terrancedejesus
January 22, 2025 15:07 14s
January 22, 2025 15:07 14s
[New Hunt] Persistence via NetworkManager Dispatcher Script
Community #2854: Pull request #4408 opened by Aegrah
January 22, 2025 10:00 20s
January 22, 2025 10:00 20s
[New Hunt] Persistence via Desktop Bus (D-Bus)
Community #2853: Pull request #4407 opened by Aegrah
January 22, 2025 09:45 18s
January 22, 2025 09:45 18s
[New Hunt] Persistence via PolicyKit
Community #2852: Pull request #4406 opened by Aegrah
January 22, 2025 09:24 18s
January 22, 2025 09:24 18s
January 22, 2025 01:46 14s
[New Hunt] General Kernel Manipulation
Community #2849: Pull request #4403 opened by Aegrah
January 21, 2025 16:59 38s
January 21, 2025 16:59 38s
[New Hunt] Persistence via Initramfs
Community #2848: Pull request #4402 opened by Aegrah
January 21, 2025 16:47 16s
January 21, 2025 16:47 16s
[New & Tuning] Persistence via GRUB Bootloader
Community #2847: Pull request #4401 opened by Aegrah
January 21, 2025 16:21 21s
January 21, 2025 16:21 21s
[New Rule] Unusual D-Bus Daemon Child Process
Community #2846: Pull request #4397 opened by Aegrah
January 21, 2025 10:43 12s
January 21, 2025 10:43 12s
[New Rule] File with Right-to-Left Override Character Created/Executed
Community #2845: Pull request #4396 opened by w0rk3r
January 20, 2025 16:14 13s
January 20, 2025 16:14 13s