-
It would be very convenient to have combining rules. For example, specify in the input:
``` toml
[input]
version = 1
[[pairs]]
atoms = ["A", "A"]
lj = {sigma = "... ", epsilon = ..."}
[[pairs]]
ato…
-
### Rule UUID
d04ae2b8-ad54-4de0-bd87-4bc1da66aa59
### Example EventLog
example log line which generate alerts based on this rule:
```
message: A Kerberos service ticket was requested.
Accou…
-
**Is your feature request related to a problem?**
I have not checked all, but many of the sigma rules in opensearch 2.10 are quite old. The screenshot below is dated 2019 - but that rule in sigmahq r…
-
**What is the bug?**
The security analytics plugin is converting the logsource input into pre-defined categories and ignoring the service property of the logsource, resulting in a high number of fals…
-
With go 1.18 introducing generics, we should investigate if they could be used to clean up some type switches that were needed to deal with arbitrary types defined in Sigma rules and potential type mi…
-
By default, md-flexible is compiled with a mixing functionality, meaning we can have several types of particles in our simulation.
In the force functors, we retrieve the mixed coefficients from a Par…
-
I would like to know with there is a way for me to add two new features to GOMC code in order to properly simulate the system I am working with. These features would be: 1) Improper energy calculation…
-
Greetings,
I tried custom_field with raw rules but not working (Only working with sigma rules)
https://certeu.github.io/droid-docs/custom_fields/
Can you add option for raw rules custom field ???…
-
https://github.com/SigmaHQ/sigma/blob/master/rules/network/dns
-
I think I should open an issue for shedding light on a problem that appeared through the discussion of PR #1407.
In UniMath, Sigma-types and hence also the cartesian product are implemented as a re…