Skip to content

Latest commit

 

History

5 Commits

Folders and files

NameName
Last commit message
Last commit date
 
 
 
 
 
 
 
 

Repository files navigation

agentdfir-rules

Community detection rule packs for AgentDFIR — open-source DFIR for AI agents.

Rules are declarative JSON, shareable independently of the engine (Sigma-style). Load them at triage time:

agentdfir triage --rules ./rules <case>.adfir

Packs

Pack Rules Purpose
rules/starter-pack.json 4 Minimal format example — copy this to start an org pack.
rules/community-pack.json 37 Curated detections: credential access, defense evasion, persistence, container escape, exfil/C2, insecure MCP config. 26 HIGH/CRITICAL, 14 high-confidence. Every rule mapped to MITRE ATT&CK where a valid technique exists, with OWASP LLM / Agentic references.

Packs are authored in the AgentDFIR repo (rules/). This repo mirrors them automatically: .github/workflows/sync.yml pulls from AgentDFIR main every 6 hours (or on manual dispatch), validates with the real loader, and commits only on change. Contribute new community rules via PR to AgentDFIR rules/community-pack.json.

Rule format

{
  "pack": "my-org", "version": "1",
  "rules": [{
    "id": "MY_RULE", "title": "", "description": "",
    "severity": "HIGH", "confidence": "medium",
    "match": {"type": "command|summary|config|transcript",
              "contains": [""], "regex": ""},
    "false_positive_notes": "MANDATORY — expected FP causes",
    "mitre_atlas": "AML.T00xx", "mitre_attack": "T1xxx"
  }]
}
  • false_positive_notes is mandatory — rules without FP analysis are rejected by the loader.
  • MITRE fields only where a valid technique exists; never force mappings.
  • Matched secret-like values are never echoed into findings.
  • references carries OWASP LLM Top 10 / Agentic mappings; rule IDs must not collide with AgentDFIR built-in rules.

Contributing

One PR per pack. Include: the pack JSON, a short rationale per rule, and (where possible) a synthetic fixture reproducing the behavior (agentdfir simulate output welcome). CI validates pack syntax with the AgentDFIR loader.

License

MIT

About

Community detection rule packs for AgentDFIR — declarative, shareable DFIR rules for AI agents

Resources

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Contributors