Techniques
Sample rules
My First Rule
- source: elastic
- technicques:
Description
This rule helps you test and practice using alerts with Elastic Security as you get set up. It’s not a sign of threat activity.
Detection logic
event.kind:event
This rule helps you test and practice using alerts with Elastic Security as you get set up. It’s not a sign of threat activity.
event.kind:event