-
Hi,
I suggest adding more artifacts in definitions for remote execution tools.
Currently, I see "PsExec" as one of them in both Windows and Server directories but we could have its alternatives lik…
-
This behavior is very very similar to stack strings, but does not use the stack. A string is built character by character, out of order, and written to a variable in the `.data` section.
Here is an…
-
Dear Coraza-Caddy maintainer,
it seems if CRS rule 920171 is not applied on chunked-encoded requests (i.e., requests using `Transfer-Encoding: chunked`). I used the following request to identify th…
-
### Packages tests metrics information
| | |
|:--|:--:|
|**Main release candidate issue**|#18240|
|**Main packages metrics issue**|#18482|
|**Version**|4.5.1|
|**Release candidate**|RC2|
|**T…
-
Hello,
I think conversion of the following rule produces incorrectly escaped **elasticsearch** equivalent:
`/rules/windows/process_creation/proc_creation_win_invoke_obfuscation_clip.yml`
The …
-
**Describe the bug**
403 on detect script use - not related to bad key, as that was tested and the resource was giving a 403, but the sample gave a very generic error. I had to add a line to determin…
-
**Context:**
- Playwright Version: 1.28.1
- Operating System: Windows 10 10.0.19044
- Node.js version: 19.0.1
- Browser: Chromium
**Code Snippet**
```javascript
test('playwright investigation…
-
As part of a [PR](https://github.com/elastic/integrations/pull/3814#discussion_r977630490) it has been brought to my attention that we shouldn't add event.ingested to ingest pipelines since that field…
-
| Target version | Related issue | Related PR |
|--------------------|--------------------|-----------------|
| 4.4.0 | [#15286](https://github.com/wazuh/wazuh/issues/15286) | [15300](https://g…
-
### Packages tests metrics information
|||
| :-- | :-- |
| **Main release candidate issue** | #18240 …