-
Notifications
You must be signed in to change notification settings - Fork 8.2k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[SECURITY SOLUTION] [Detections] Increase lookback when gap is detected #68339
Commits on Jun 30, 2020
-
Configuration menu - View commit details
-
Copy full SHA for a023280 - Browse repository at this point
Copy the full SHA a023280View commit details -
Configuration menu - View commit details
-
Copy full SHA for 8ce0f95 - Browse repository at this point
Copy the full SHA 8ce0f95View commit details -
computes new max signals based on how many intervals of rule runs wer…
…e missed when gap in consecutive rule runs is detected
Configuration menu - View commit details
-
Copy full SHA for e0db4e5 - Browse repository at this point
Copy the full SHA e0db4e5View commit details -
adds logging, fixes bug where we could end up with negative values fo…
…r diff, adds calculatedFrom to the search after query
Configuration menu - View commit details
-
Copy full SHA for 4a85ba0 - Browse repository at this point
Copy the full SHA 4a85ba0View commit details -
remove console.log and for some reason two eslint disables were added…
… so i removed one of them
Configuration menu - View commit details
-
Copy full SHA for 9c0e825 - Browse repository at this point
Copy the full SHA 9c0e825View commit details -
rename variables, add test based on log message - need to figure out …
…a better way to test this
Configuration menu - View commit details
-
Copy full SHA for 4670f6b - Browse repository at this point
Copy the full SHA 4670f6bView commit details -
Configuration menu - View commit details
-
Copy full SHA for 4ce4a25 - Browse repository at this point
Copy the full SHA 4ce4a25View commit details -
fully re-worked the algorithm for searching discrete time periods, st…
…ill need search_after because a user could submit a rule with a custom maxSignals so that would still serve a purpose. This needs heavy refactoring though, and tests.
Configuration menu - View commit details
-
Copy full SHA for 3c9587c - Browse repository at this point
Copy the full SHA 3c9587cView commit details -
updated loop to include maxSignals per time interval tuple, this way …
…we guarantee maxSignals per full rule interval. Needs some refactoring though.
Configuration menu - View commit details
-
Copy full SHA for 889382a - Browse repository at this point
Copy the full SHA 889382aView commit details -
Configuration menu - View commit details
-
Copy full SHA for b336202 - Browse repository at this point
Copy the full SHA b336202View commit details -
adds unit tests and cleans up new util function for determining time …
…intervals for searching to occur
Configuration menu - View commit details
-
Copy full SHA for f7b0318 - Browse repository at this point
Copy the full SHA f7b0318View commit details -
Configuration menu - View commit details
-
Copy full SHA for 9072963 - Browse repository at this point
Copy the full SHA 9072963View commit details -
Configuration menu - View commit details
-
Copy full SHA for dfecacd - Browse repository at this point
Copy the full SHA dfecacdView commit details -
Configuration menu - View commit details
-
Copy full SHA for f5111ed - Browse repository at this point
Copy the full SHA f5111edView commit details -
updates unit tests and fixes bug where search result would return 0 h…
…its but we were accessing property on non-existent hit item
Configuration menu - View commit details
-
Copy full SHA for 28fd2fe - Browse repository at this point
Copy the full SHA 28fd2feView commit details -
Configuration menu - View commit details
-
Copy full SHA for b47318a - Browse repository at this point
Copy the full SHA b47318aView commit details -
fixes a bug where a negative gap could exist if a rule ran before the…
… lookback time, also fixes a bug where the search and bulk loop would return false when successful.
Configuration menu - View commit details
-
Copy full SHA for 59a254a - Browse repository at this point
Copy the full SHA 59a254aView commit details -
Configuration menu - View commit details
-
Copy full SHA for 2c201f6 - Browse repository at this point
Copy the full SHA 2c201f6View commit details -
Configuration menu - View commit details
-
Copy full SHA for 61e3fae - Browse repository at this point
Copy the full SHA 61e3faeView commit details -
Configuration menu - View commit details
-
Copy full SHA for c681b09 - Browse repository at this point
Copy the full SHA c681b09View commit details -
Configuration menu - View commit details
-
Copy full SHA for 3898a80 - Browse repository at this point
Copy the full SHA 3898a80View commit details -
Configuration menu - View commit details
-
Copy full SHA for c1b44da - Browse repository at this point
Copy the full SHA c1b44daView commit details -
Configuration menu - View commit details
-
Copy full SHA for eadef46 - Browse repository at this point
Copy the full SHA eadef46View commit details -
Configuration menu - View commit details
-
Copy full SHA for 7a6ada6 - Browse repository at this point
Copy the full SHA 7a6ada6View commit details -
Configuration menu - View commit details
-
Copy full SHA for 453f514 - Browse repository at this point
Copy the full SHA 453f514View commit details -
Configuration menu - View commit details
-
Copy full SHA for 0d36ebe - Browse repository at this point
Copy the full SHA 0d36ebeView commit details