Unable to find MAC addresses' entity.asset.first_seen_time
I'm trying to get a first_seen_time for MAC address assets in a rule, but finding that a majority of the derived_context asset entities have entity.as...
170
Reference Lists and Visualizations
Hello,Does anyone know if the functionality exists to incorporate a reference list into a dashboard visualization? Specifically for a UDM Events visua...
472
Want to Modernize Your Security Operations? Don't Miss This Webinar! 🚀
Ready to embrace the power of Detection-as-Code and take your SecOps to the next level?
Join David French and the Google SecOps (formerly known as Chr...
Am using the last version of EVE-NG Community edition.I have added Fortigate's Iso and fix permissions without errors but when I try to start the Fort...
What is the utility of a group function in YARA-L?
I am reaching out in relation to the group function:https://cloud.google.com/chronicle/docs/detection/yara-l-2-0-syntax#groupNow i understand what it...
2604
BindPlane OpenTelemetry collector
Dear All,Could anyone please give a documentation for how to use "BindPlane OpenTelemetry collector" for syslog collection and how to collect metric l...