
plague
Default Detections for EDR
anomaly-detectionconfiguration-auditingcurated-resources+4
97

Default Detections for EDR

Runs custom filters on Elasticsearch and alerts on matches

A host-based IDS and network monitoring system (My graduation project)

A network packet forensics tool for SSH

Ability to detect suspicious activity such as (WEP/WPA/WPS) attack by sniffing the air for wireless packets.