Ricardo Dias
Ricardo Dias
Hi @nicolasreich. First of all, sorry for the late reply. So far we have developed data dictionaries as independent document, as close as possible to the raw events produced by...
Hi @nicolasreich. Thanks for the detailed explanation, it is now more clear what you mean by 'extending', in a nutshell: deconstruct data dictionaries depending on the field prevalence, to avoid...
Thanks for the correction Wesley. Looking forward to try pehash Yara rules.
Thanks for the feedback!