Skip to content

Actions: elastic/detection-rules

Community

Actions

Loading...
Loading

Show workflow options

Create status badge

Loading
1,063 workflow runs
1,063 workflow runs

Filter by Event

Filter by Status

Filter by Branch

Filter by Actor

[ci] Add new docs-builder automation.
Community #2947: Pull request #4507 opened by Mpdreamz
March 4, 2025 09:44 9s
March 4, 2025 09:44 9s
[Bug] Missing Related Integrations and Required Fields for ESQL Rules
Community #2946: Issue #4506 opened by Mikaayenson
March 3, 2025 20:05 12s
March 3, 2025 20:05 12s
[New Rule] Cross-Platform Dev for Python Rules
Community #2945: Issue #4505 opened by Aegrah
March 3, 2025 10:58 12s
March 3, 2025 10:58 12s
[New] WDAC Policy File by an Unusual Process
Community #2944: Pull request #4504 opened by Samirbous
February 28, 2025 18:30 11s
February 28, 2025 18:30 11s
[Rule Tuning] Remove hardcoded logic from description
Community #2943: Pull request #4503 opened by w0rk3r
February 28, 2025 15:24 12s
February 28, 2025 15:24 12s
Prep for Release 9.0
Community #2942: Pull request #4502 opened by shashank-elastic
February 27, 2025 11:46 22s
February 27, 2025 11:46 22s
[Security Content] Windows Audit Policies Config Guides - Repo Edition
Community #2941: Pull request #4501 opened by w0rk3r
February 26, 2025 16:19 15s
February 26, 2025 16:19 15s
[New Rule] Python Site or User Customize File Creation
Community #2940: Pull request #4500 opened by Aegrah
February 26, 2025 14:40 11s
February 26, 2025 14:40 11s
[New Rule] Python Path File (pth) Creation
Community #2939: Pull request #4499 opened by Aegrah
February 26, 2025 14:36 15s
February 26, 2025 14:36 15s
chore: adjust paths to track in REACT test CI workflow
Community #2938: Pull request #4498 opened by traut
February 26, 2025 14:13 15s
February 26, 2025 14:13 15s
Modifications to PAD job descriptions, tactics and techniques
Community #2937: Pull request #4497 opened by mgarzon
February 25, 2025 20:32 11s
February 25, 2025 20:32 11s
[Rule Tuning] Sysmon rules that uses event.action
Community #2936: Pull request #4496 opened by w0rk3r
February 25, 2025 14:47 11s
February 25, 2025 14:47 11s
fix: removing outdated code in Kibana client auth
Community #2935: Pull request #4495 opened by traut
February 25, 2025 13:16 10s
February 25, 2025 13:16 10s
[Tuning] Remote File Copy to a Hidden Share
Community #2934: Pull request #4494 opened by Samirbous
February 25, 2025 09:12 14s
February 25, 2025 09:12 14s
[Tuning] Potential Evasion via Filter Manager
Community #2933: Pull request #4493 opened by Samirbous
February 24, 2025 16:45 11s
February 24, 2025 16:45 11s
[Security Content] Basic EDR Setup Guides - Phase 1
Community #2932: Pull request #4492 opened by w0rk3r
February 24, 2025 15:36 18s
February 24, 2025 15:36 18s
[Bug] [DaC] Fix Typo in CLI.md
Community #2931: Pull request #4491 opened by eric-forte-elastic
February 24, 2025 15:02 10s
February 24, 2025 15:02 10s
Fix typo in error message
Community #2929: Pull request #4489 opened by shashank-elastic
February 21, 2025 16:19 10s
February 21, 2025 16:19 10s
[New Rule] Base64 Decoded Payload Piped to Interpreter
Community #2928: Pull request #4488 opened by Aegrah
February 21, 2025 15:50 9s
February 21, 2025 15:50 9s
[New Rule] Unusual File Transfer Utility Launched
Community #2927: Pull request #4487 opened by Aegrah
February 21, 2025 15:41 10s
February 21, 2025 15:41 10s
[New Rule] Unusual Base64 Encoding/Decoding Activity
Community #2926: Pull request #4486 opened by Aegrah
February 21, 2025 15:34 11s
February 21, 2025 15:34 11s
[New Rule] Kill Command Execution
Community #2925: Pull request #4485 opened by Aegrah
February 21, 2025 15:19 10s
February 21, 2025 15:19 10s
[New Rule] Linux User Account Credential Modification
Community #2924: Pull request #4484 opened by Aegrah
February 21, 2025 13:18 9s
February 21, 2025 13:18 9s
[New Rule] SSH Authorized Keys File Deletion
Community #2923: Pull request #4483 opened by Aegrah
February 21, 2025 13:08 12s
February 21, 2025 13:08 12s