Building Detection Rules With Sigma

Builds vendor-agnostic detection rules using the Sigma rule format for threat detection across SIEM platforms including Splunk, Elastic, and Microsoft Sentinel. Use when creating portable detection logic from threat intelligence, mapping rules to MITRE ATT&CK techniques, or converting community Sigma rules into platform-specific queries using sigmac or pySigma backends.

yanacuti1121 3b2d4a2 4 files · 29.7 KB Updated 2 repo stars

File contents

yanacuti1121/Yana-AI/tree/main/core/skills/building-detection-rules-with-sigma commit 3b2d4a202b

Frequently asked questions

npx skillmds add yanacuti1121/building-detection-rules-with-sigma