← Blog // TAG

SIEM

1 article

From a log to a detection that works in any SIEM A KQL detection only works for Sentinel. With Sigma you write it once in YAML and convert it to KQL, SPL, Elastic or Wa… Read →