Building Detection Rules With Sigma

Use when builds vendor-agnostic detection rules using the Sigma rule format for threat detection across SIEM platforms including Splunk, Elastic, and Microsoft Sentinel. Use when creating portable detection logic from threat intelligence, mapping rules to MITRE ATT&CK techniques, or converting community Sigma rules into platform-specific queries using sigmac or pySigma backends.

oyi77 3ceee21 4.2 KB Updated 10 repo stars

File contents

oyi77/1ai-skills/tree/main/cybersecurity/building-detection-rules-with-sigma commit 3ceee21858

Frequently asked questions

npx skillmds add oyi77/building-detection-rules-with-sigma