This repo is the 'single source of truth' for all of our bundled detection rules within Elastic Security, and from this repo we'll cut releases of the Prebuilt Security Detection Rulesintegration which can be installed directly from within the stack via the Integrations app:
Similar to the docs link for this integration above, you can fetch a json representation of all available packages directly from EPR (Elastic Package Registry).
Lastly, you're still more than welcome to leverage the Detection Rules CLI from the rules repo to test/manage/load rules as you wish, and you will have access to the latest 'pre-release' rules before we cut the next integration release (i.e. iterative updates to rules between stack releases, so be careful as they may not be fully tested or compatible with current integrations quite yet).
Hope that helps! And please do let us know if you have any other questions
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.