Skip to content

Pull requests: elastic/detection-rules

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

[Rule Tunings] AWS ESQL keep fields missing backport: auto Domain: Cloud Integration: AWS AWS related rules Rule: Tuning tweaking or tuning an existing rule Team: TRADE
#6014 opened Apr 29, 2026 by imays11 Contributor Loading…
[Rule Tuning] Windows High-Severity Rules Revamp - 7 backport: auto Domain: Endpoint OS: Windows windows related rules Rule: Tuning tweaking or tuning an existing rule
#6013 opened Apr 29, 2026 by w0rk3r Contributor Loading…
[FR] Add new unit test for process fields in non process events backport: auto enhancement New feature or request patch test-suite unit and other testing components
#6011 opened Apr 29, 2026 by Mikaayenson Contributor Loading…
3 tasks
[Rule Tuning] Windows High-Severity Rules Revamp - 6 backport: auto Domain: Endpoint OS: Windows windows related rules Rule: Tuning tweaking or tuning an existing rule
#6010 opened Apr 29, 2026 by w0rk3r Contributor Loading…
[FR] Merged Renovate Dependency Updates backport: auto dependencies Pull requests that update a dependency file enhancement New feature or request patch python Internal python for the repository
#6008 opened Apr 29, 2026 by eric-forte-elastic Contributor Loading…
5 tasks
[Rule Tuning] Misc GenAI Tuning backport: auto Rule: Tuning tweaking or tuning an existing rule
#6006 opened Apr 29, 2026 by Mikaayenson Contributor Loading…
2 of 5 tasks
[Rule Tuning] Windows High-Severity Rules Revamp - 5 backport: auto Domain: Endpoint OS: Windows windows related rules Rule: Tuning tweaking or tuning an existing rule
#6004 opened Apr 29, 2026 by w0rk3r Contributor Loading…
[FR] Add sub-technique data to the summary-xlsx backport: auto bug Something isn't working enhancement New feature or request patch python Internal python for the repository
#6002 opened Apr 29, 2026 by eric-forte-elastic Contributor Loading…
5 tasks
[Bug] KQL does not properly escape leading forward slash backport: auto bug Something isn't working kql related to the kql module patch
#6001 opened Apr 29, 2026 by eric-forte-elastic Contributor Loading…
5 tasks
[Bug] TOML string outputs are not properly escaped backport: auto bug Something isn't working patch python Internal python for the repository
#6000 opened Apr 29, 2026 by eric-forte-elastic Contributor Loading…
5 tasks
[Enhancement] Add test for constant_keyword fields on alerts-only rules backport: auto bug Something isn't working patch python Internal python for the repository test-suite unit and other testing components
#5997 opened Apr 28, 2026 by terrancedejesus Contributor Loading…
5 tasks
[Rule Tuning] Misc Windows Tuning backport: auto Domain: Endpoint OS: Windows windows related rules Rule: Tuning tweaking or tuning an existing rule
#5990 opened Apr 27, 2026 by w0rk3r Contributor Loading…
[New/Tuning] K8 RBAC Privs backport: auto Integration: Kubernetes Kubernetes Integration OS: Windows windows related rules Rule: New Proposal for new rule Rule: Tuning tweaking or tuning an existing rule
#5987 opened Apr 27, 2026 by Samirbous Contributor Loading…
ProTip! Add no:assignee to see everything that’s not assigned.