Unable to find MAC addresses' entity.asset.first_seen_timeI'm trying to get a first_seen_time for MAC address assets in a rule, but finding that a majority of the derived_context asset entities have entity.asForum|Forum|1 year ago140
Reference Lists and VisualizationsHello,Does anyone know if the functionality exists to incorporate a reference list into a dashboard visualization? Specifically for a UDM Events visuaForum|Forum|1 year ago282
Want to Modernize Your Security Operations? Don't Miss This Webinar! 🚀Ready to embrace the power of Detection-as-Code and take your SecOps to the next level? Join David French and the Google SecOps (formerly known as ChrMForum|Forum|1 year ago160
Fortigate don't start on Eve-ngAm using the last version of EVE-NG Community edition.I have added Fortigate's Iso and fix permissions without errors but when I try to start the FortBForum|Forum|1 year ago1301
What is the utility of a group function in YARA-L?I am reaching out in relation to the group function:https://cloud.google.com/chronicle/docs/detection/yara-l-2-0-syntax#groupNow i understand what it Forum|Forum|1 year ago1614
BindPlane OpenTelemetry collectorDear All,Could anyone please give a documentation for how to use "BindPlane OpenTelemetry collector" for syslog collection and how to collect metric lForum|Forum|1 year ago1567