OTRF / ThreatHunter-Playbook

A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
MIT License
3.97k stars 803 forks source link

IDEA - Aggregate Event IDs and Field Names used for each analytic #40

Open Cyb3rWard0g opened 4 years ago

Cyb3rWard0g commented 4 years ago

It would be good to have an idea of what fields and events are used the most for all analytics in the project.