YARA casing

This commit is contained in:
DefensiveDepth
2024-04-03 16:17:29 -04:00
parent a8f25150f6
commit f66cca96ce

View File

@@ -2053,7 +2053,7 @@ soc:
query: "so_detection.language:sigma"
- name: "Detection Type - Sigma - Windows"
query: 'so_detection.language:sigma AND so_detection.content: "*product: windows*"'
- name: "Detection Type - Yara (Strelka)"
- name: "Detection Type - YARA (Strelka)"
query: "so_detection.language:yara"
- name: "Security Onion - Grid Detections"
query: "so_detection.ruleset:securityonion-resources"