Custom Detection: Newly Discovered Asset
|
|
0
|
370
|
August 26, 2022
|
Unable to commit detection
|
|
5
|
505
|
August 3, 2022
|
Commit detection adjustment in triggers. (Identity key and lasting duration of detection)
|
|
1
|
421
|
June 22, 2022
|
Custom Detection Example - Newly created SSL certificate
|
|
0
|
471
|
May 2, 2022
|
Help in identifying data obfuscation(protocol impersonation using cookie)
|
|
9
|
1026
|
February 9, 2022
|
CVE-2021-44228 detection
|
|
2
|
1131
|
December 14, 2021
|
Handing DETECTION_UPDATE during for ExtraHop-Demisto timeout
|
|
1
|
790
|
October 12, 2021
|
Detecting Unauthorized Remote Access Trigger
|
|
0
|
893
|
October 7, 2021
|
Mapping HTTP.payload information with Src/Dst IP/Port
|
|
5
|
1116
|
September 20, 2021
|
Testing a trigger - forcing a detection?
|
|
2
|
1095
|
June 22, 2021
|
Detection: CVE-2021-22991
|
|
3
|
1409
|
March 12, 2021
|
External javascript libraries, decompression, ebcdic
|
|
7
|
3261
|
January 21, 2021
|
Detection SIEM Connector Description Issue
|
|
8
|
1393
|
January 4, 2021
|
Cisco AnyConnect Secure Mobility Client Arbitrary Code Execution Vulnerability
|
|
0
|
1330
|
November 6, 2020
|
Throttle Triggered Precision PCAP
|
|
2
|
1298
|
October 15, 2020
|
DNS Answers in ODS feed to Splunk
|
|
2
|
1291
|
October 9, 2020
|
Got Bots? We got an App for that!
|
|
1
|
2579
|
September 16, 2020
|
TIMER_30SEC event
|
|
2
|
1302
|
August 6, 2020
|
Honey Token Detection across multiple protocols
|
|
0
|
1813
|
June 4, 2020
|
lookupByIP in L2 discovery
|
|
3
|
1350
|
May 18, 2020
|
NDR POW (2/27): POSH Watcher
|
|
6
|
2321
|
May 14, 2020
|
MSRPC Records
|
|
1
|
1310
|
March 26, 2020
|
Critical Devices - EXA Connector Trigger
|
|
1
|
1661
|
March 18, 2020
|
IP address, Port, throughput
|
|
0
|
1307
|
March 15, 2020
|
Detection: Cloud Snooper
|
|
0
|
1989
|
February 27, 2020
|
NDR POW (12/16) Trickbot/RYUK Variant throw-down
|
|
0
|
1841
|
December 16, 2019
|
Debug log shows unexpected entries
|
|
8
|
1615
|
December 14, 2019
|
NDR POW (Punkbust Of the Week): Catching Homograph Attacks (PHISH PHINDER!)
|
|
0
|
1733
|
December 9, 2019
|
How to Optimize Trigger Code?
|
|
7
|
1805
|
December 5, 2019
|
Hadoop DemonBot detection
|
|
2
|
2667
|
November 13, 2019
|