Hello!
I need to use Sigma rules repo for my SIEM.
How I can translate sigma to elastic? And how I can perform auto update sigma rules?
Hello!
I need to use Sigma rules repo for my SIEM.
How I can translate sigma to elastic? And how I can perform auto update sigma rules?
Hi @kmz161
We don't currently offer native support for rule converting like that, but there are some 3rd party tools such as 3CoreSec that would be exactly what you're looking for
You can start here
Hello!
Thanks for answer!
I've added a first set of Sigma rules here.. more to follow:
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
© 2020. All Rights Reserved - Elasticsearch
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant logo are trademarks of the Apache Software Foundation in the United States and/or other countries.