Skip to main content

performing-threat-hunting-with-elastic-siem

Performs proactive threat hunting in Elastic Security SIEM using KQL/EQL queries, detection rules, and Timeline investigation to identify threats that evade automated detection. Use when SOC teams need to hunt for specific ATT&CK techniques, investigate anomalous behaviors, or validate detection coverage gaps using Elasticsearch and Kibana Security.

الانتقال إلى التثبيت

معلومات المصدر

المستودع
AgentFlocks/flocks
آخر نشاط في المصدر
٥ مايو ٢٠٢٦ في ٠٥:٤٥
لغة SKILL.md المكتشفة
الإنجليزية
النجوم
٤٤٥
التفرعات
٨٣

خيارات التثبيت

يُحدَّد Prompt الذي يراجع المصدر أولًا بشكل افتراضي. يمكنك التبديل إلى أمر مباشر أو تنزيل نسخة محلية.

مراجعة ملفات المصدر

اقرأ SKILL.md وأي ملفات مرافقة يعرضها SkillsMP قبل أن تقرر التثبيت.