Skip to content

feat(rules): Detection rules#136

Merged
rabbitstack merged 17 commits intomasterfrom
detection-rules
Nov 12, 2022
Merged

feat(rules): Detection rules#136
rabbitstack merged 17 commits intomasterfrom
detection-rules

Conversation

@rabbitstack
Copy link
Copy Markdown
Owner

@rabbitstack rabbitstack commented Nov 11, 2022

This PR provides all the groundwork and an initial batch of detection rules modeled after the MITRE framework. The following is a non-exhaustive list of delivered features:

  • macro expansion in rules
  • detection rules based on simple and stateful attack patterns
  • HTML email templates for rule alerts
  • filter field interpolations in the alert title and text strings
  • a number of optimizations and bug fixes

@rabbitstack rabbitstack changed the title feat (rules): Detection rules feat(rules): Detection rules Nov 11, 2022
@rabbitstack rabbitstack merged commit 4322805 into master Nov 12, 2022
@rabbitstack rabbitstack deleted the detection-rules branch November 12, 2022 22:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant