Skip to content

[windows] FIx pipeline to set file hash for event 26#18501

Merged
marc-gr merged 2 commits intoelastic:mainfrom
marc-gr:fix/sysmon-e26-file-hash-not-process-hash
Apr 28, 2026
Merged

[windows] FIx pipeline to set file hash for event 26#18501
marc-gr merged 2 commits intoelastic:mainfrom
marc-gr:fix/sysmon-e26-file-hash-not-process-hash

Conversation

@marc-gr
Copy link
Copy Markdown
Contributor

@marc-gr marc-gr commented Apr 17, 2026

Proposed commit message

FIx pipeline to set file hash for event 26

Checklist

  • I have reviewed tips for building integrations and this pull request is aligned with them.
  • I have verified that all data streams collect metrics or logs.
  • I have added an entry to my package's changelog.yml file.
  • I have verified that Kibana version constraints are current according to guidelines.
  • I have verified that any added dashboard complies with Kibana's Dashboard good practices

@marc-gr marc-gr added Integration:windows Windows bugfix Pull request that fixes a bug issue Team:Security-Windows Platform Security Windows Platform team [elastic/sec-windows-platform] labels Apr 17, 2026
@marc-gr marc-gr force-pushed the fix/sysmon-e26-file-hash-not-process-hash branch from 8ee47e0 to 9bd98d3 Compare April 17, 2026 13:06
@marc-gr marc-gr marked this pull request as ready for review April 17, 2026 13:07
@marc-gr marc-gr requested review from a team as code owners April 17, 2026 13:07
@elasticmachine
Copy link
Copy Markdown

Pinging @elastic/sec-windows-platform (Team:Security-Windows Platform)

Comment thread packages/windows/changelog.yml
@elastic-vault-github-plugin-prod
Copy link
Copy Markdown

elastic-vault-github-plugin-prod Bot commented Apr 17, 2026

🚀 Benchmarks report

Package windows 👍(4) 💚(3) 💔(3)

Expand to view
Data stream Previous EPS New EPS Diff (%) Result
windows_defender 9803.92 7812.5 -1991.42 (-20.31%) 💔
powershell_operational 2710.03 1427.76 -1282.27 (-47.32%) 💔
applocker_exe_and_dll 3174.6 2444.99 -729.61 (-22.98%) 💔

To see the full report comment with /test benchmark fullreport

@pierrehilbert pierrehilbert added the Team:Elastic-Agent-Data-Plane Agent Data Plane team [elastic/elastic-agent-data-plane] label Apr 17, 2026
@elasticmachine
Copy link
Copy Markdown

Pinging @elastic/elastic-agent-data-plane (Team:Elastic-Agent-Data-Plane)

@marc-gr marc-gr enabled auto-merge (squash) April 28, 2026 15:40
@marc-gr marc-gr disabled auto-merge April 28, 2026 15:40
@elasticmachine
Copy link
Copy Markdown

💚 Build Succeeded

History

@marc-gr marc-gr merged commit 0e84135 into elastic:main Apr 28, 2026
9 checks passed
@marc-gr marc-gr deleted the fix/sysmon-e26-file-hash-not-process-hash branch April 28, 2026 16:43
@elastic-vault-github-plugin-prod
Copy link
Copy Markdown

Package windows - 3.8.3 containing this change is available at https://epr.elastic.co/package/windows/3.8.3/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

bugfix Pull request that fixes a bug issue Integration:windows Windows Team:Elastic-Agent-Data-Plane Agent Data Plane team [elastic/elastic-agent-data-plane] Team:Security-Windows Platform Security Windows Platform team [elastic/sec-windows-platform]

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants