Skip to main content

Difference between all Crowdstrike available Parsers

  • February 9, 2024
  • 26 replies
  • 676 views

Show first post

26 replies

DevinDeManche
Forum|alt.badge.img

The CS_DETECT feed and API supports the new Alerts API now.  


That confirms my findings that logs collected by both feeds are the same. The parsing by CS_ALERTS is slightly improved and I've submitted a request for those improvements to be added to CS_DETECT. Do we know why this parser was created if CS_DETECT already supports the new API?