Skip to content

Pull requests: elastic/detection-rules

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

Includes deprecated rule stubs to the package
#5813 opened Mar 5, 2026 by dplumlee Draft
5 tasks
[New/Tuning] TeamPCP Simulation - New & Tuned Rules backport: auto Domain: Cloud Integration: Cloud Defend Cloud Defend Integration Integration: Kubernetes Kubernetes Integration Rule: New Proposal for new rule Rule: Tuning tweaking or tuning an existing rule Team: TRADE
#5812 opened Mar 5, 2026 by Aegrah Loading…
[Tuning/New] RMM Rules backport: auto Domain: Endpoint OS: Windows windows related rules Rule: New Proposal for new rule Rule: Tuning tweaking or tuning an existing rule
#5810 opened Mar 3, 2026 by Samirbous Loading…
[Bug] Ignore Other Keep Wildcards backport: auto bug Something isn't working patch python Internal python for the repository
#5792 opened Feb 26, 2026 by eric-forte-elastic Loading…
5 tasks
[New] Suspicious Execution from VS Code Extension backport: auto Domain: Endpoint OS: Windows windows related rules Rule: New Proposal for new rule
#5786 opened Feb 26, 2026 by Samirbous Loading…
[FR] Minor Typo Fixes backport: auto documentation Improvements or additions to documentation Domain: Cloud Domain: Endpoint Hunting Integration: Microsoft 365 OS: Windows windows related rules patch Rule: Tuning tweaking or tuning an existing rule
#5784 opened Feb 25, 2026 by eric-forte-elastic Loading…
5 tasks
[Bug] [DAC] Add filtering to export-rules-from-repo backport: auto bug Something isn't working detections-as-code patch python Internal python for the repository
#5769 opened Feb 24, 2026 by eric-forte-elastic Loading…
5 tasks
[Bug] KQL Validation Add Wildcard w/ Space token value backport: auto bug Something isn't working patch python Internal python for the repository Team: TRADE
#5753 opened Feb 20, 2026 by imays11 Loading…
5 tasks done
[FR] [DAC] Add Exception Duplication Checking backport: auto detections-as-code enhancement New feature or request patch python Internal python for the repository
#5689 opened Feb 5, 2026 by eric-forte-elastic Loading…
5 tasks
ProTip! Type g p on any issue or pull request to go back to the pull request listing page.