- Notifications
You must be signed in to change notification settings - Fork33
· 703 commits to main since this release
eb4b6f8 This commit was created on GitHub.com and signed with GitHub’sverified signature.
Support for more output languages
- Added support for Graylog
Improvements in translation quality
- Added escaping mechanisms for the following platforms both as input and output: Splunk, CrowdStrike, Elastic Stack, Falcon LogScale, Microsoft Sentinel, IBM QRadar, Chronicle Security, AWS OpenSearch
- The author and license of the source rule are now added as a comment to its translation if there's no description field
- Roota:
- Added parsing of Splunk keywords without quotes and fixed known issues with keywords
- Added support for the
!=operator in Splunk queries and improved the logic of processing other operators - Improved translation of Roota with a Splunk query into Falcon LogScale by adding quotes to the values in table functions
- Fixed an issue where the same default mapping could be applied for any output language
- Sigma:
- Fixed an issue with the wrong translation of the
levelfield into some platforms - Improved parsing of the
and notoperator
- Fixed an issue with the wrong translation of the
Assets2
Uh oh!
There was an error while loading.Please reload this page.