Hi,
Just wanted to ask if there's any threat hunting queries available for SIEM and Elastic Defend ?
Thanks
Hi,
Just wanted to ask if there's any threat hunting queries available for SIEM and Elastic Defend ?
Thanks
Hi @Charles_Nkuna ,
You can use the queries made available by Elastic through our Prebuilt Rules. Have you tried those?
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.