THREAT OPS › Threat News › Prioritizing Alerts Triage with Higher-Order Detection Rules
Prioritizing Alerts Triage with Higher-Order Detection Rules
<p>At Elastic, we operate a large and diverse set of behavior detection rules across multiple datasets, environments, and severity levels. Most of these rules are atomic, each designed to detect a specific behavior, signal, or attack pattern. In addition, we ingest and promote <a href="https://github.com/elastic/detection-rules/tree/main/rules/promotions">external alerts</a> from security integrat
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- d358641c452dc0af5ab85d02f6f8948ec57c7ab9sha1
- ae88c095e95d78aae3766875de2ce8d6d34c40c4sha1
- 6a7c1e96749fd5c2fc8801da747f4e29d18150a1sha1
- static-www.elastic.codomain