github wazuh/wazuh-ruleset v3.7.0
Wazuh Ruleset 3.7.0

latest releases: v3.13.6, v3.13.5, v3.13.4...
5 years ago

Added

  • osquery: specific alerts for default packs. (#196)
  • Azure integration: Decoders and rules. (#189)

Changed

  • osquery: Rename alerts fields reference. (#196)
  • update_ruleset is not available in worker nodes. (#225)
  • Update composite rules to match only same_source_ip events. (#161)

Fixed

  • Fixed active response decoder in order to match with different dates. (#223)

Removed

  • Removed deprecated rules for Syscheck.

Don't miss a new wazuh-ruleset release

NewReleases is sending notifications on new releases.