Pysigma-backend-carbonblack

Latest version: v0.1.8

Safety actively analyzes 685838 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 2 of 2

0.1.2

What's Changed
* Added json entry to backend formats by slincoln-aiq in https://github.com/7RedViolin/pySigma-backend-carbonblack/pull/1

New Contributors
* slincoln-aiq made their first contribution in https://github.com/7RedViolin/pySigma-backend-carbonblack/pull/1

**Full Changelog**: https://github.com/7RedViolin/pySigma-backend-carbonblack/compare/v0.1.1...v0.1.2

0.1.1

What's Changed
* Make backend tests more robust

**Full Changelog**: https://github.com/7RedViolin/pySigma-backend-carbonblack/compare/v0.1.0...v0.1.1

0.1.0

General
First release of pysigma-backend-carbonblack.

Backend
- Output formats include plaintext and JSON (includes query and rule metadata)
- Uses Carbon Black syntax

Pipelines
- Two pipelines
- `CarbonBlack_pipeline` = Carbon Black Enterprise EDR
- `CarbonBlackResponse_pipeline` = Carbon Black EDR
- Supports `linux`, `windows`, and `macos` product types
- Supports the following category types for field mappings
- `process_creation`
- `file_event`
- `file_change`
- `file_rename`
- `file_delete`
- `image_load`
- `registry_add`
- `registry_delete`
- `registry_event`
- `registry_set`
- `network_connection`
- `firewall`

Page 2 of 2

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.