Skip to content

Pull requests: elastic/detection-rules

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

[New/Tuning] Windows Rules to detect top threats/TTPs 24/25 backport: auto Domain: Endpoint OS: Windows windows related rules Rule: New Proposal for new rule Rule: Tuning tweaking or tuning an existing rule
#5001 opened Aug 21, 2025 by Samirbous Loading…
[New Rule] Kubectl Secret Access container OS: Linux Rule: New Proposal for new rule stale 60 days of inactivity Team: TRADE
#4834 opened Jun 19, 2025 by Aegrah Draft
[New Rules] Potential Relay Attack against a Computer Account backport: auto blocked Domain: Endpoint OS: Windows windows related rules Rule: New Proposal for new rule Rule: Tuning tweaking or tuning an existing rule
#4826 opened Jun 18, 2025 by w0rk3r Loading…
ProTip! Updated in the last three days: updated:>2025-08-20.