Skip to content
This repository has been archived by the owner on Aug 3, 2024. It is now read-only.

sigmatools 0.19

Compare
Choose a tag to compare
@phantinuss phantinuss released this 03 Apr 07:20
· 10889 commits to master since this release

Note
Original Release Date: Feb 28, 2021
Original Release Author: @thomaspatzke

Added

  • New parameters for Elastic backends
  • Various field mappings
  • FireEye Helix backend
  • Generic log source image_load
  • Kibana NDJSON backend
  • uberAgent ESA backend
  • SumoLogic CSE backend

Changed

  • Updated mdatp backend fields
  • QRadar query generation optimized
  • MDATP: case insensitive search

Fixed

  • Fixing Qradar implementation for create valid AQL queries
  • Nested conditions
  • Various minor bug fixes