Arnold van Wijnbergen

Results 8 issues of Arnold van Wijnbergen

Sysmon helps to extract a lot of information using EBPF. This also could work inside your Kubernetes (AKS Support) cluster. Currently the blocking issue is that we need to install...

enhancement

Is there a possibility to change to OUTPUT file to a custom /var/log destination ? In some cases you want to use for example /var/log/sysmon instead of the standard syslog,...

enhancement

Hi, Just curious if this functionality is available. I couldn't see this. In our use case we also need to be able to restore single dashboard (using the dashboard file...

enhancement

**Describe the bug** Maybe doing things wrong here, but the capture isn't uploaded to the SAS URL. Seems to be complaining. Followed the [documentation](https://retina.sh/docs/captures/). Seems to be a little bit...

type/bug
priority/0

**Describe the bug** Can't build binary as described in the [documentation](https://retina.sh/docs/installation/cli). Seems missing in Makefile make install-kubectl-retina **To Reproduce** Steps to reproduce the behavior: git clone https://github.com/microsoft/retina.git make install-kubectl-retina make:...

bug
documentation
help wanted

## Readiness Checklist - [X] I am running the latest version ==> Tried terraform v1.9.5 and older v1.4.7. - [X] I checked the documentation and found no answer ==> Followed...

bug

Change(s): - New Solution for exchanging / sharing Threat Intelligence using a Playbook from Microsoft Sentinel to a TAXII Server. this is build in collaboration with both Microsoft NL and...

New Solution

Using this PR I like to propose the discussion introducing LLM Prompts as pattern type for Indicators. Many domain experts see the growth of evil prompts. From solely LLM, MCP...