IMPORTANT: No additional bug fixes or documentation updates
will be released for this version. For the latest information, see the
current release documentation.
Downloadable rule updates
edit
IMPORTANT: This documentation is no longer updated. Refer to Elastic's version policy and the latest documentation.
Downloadable rule updates
editThis section lists all updates to prebuilt detection rules, made available with the Prebuilt Security Detection Rules integration in Fleet.
To download the latest updates, follow the instructions in Download latest prebuilt Elastic rules
Update version | Date | New rules | Updated rules | Notes |
---|---|---|---|---|
22 Jul 2021 |
4 |
36 |
Included in this release is a rule for Windows Defender Exclusions, which has been used in recent campaigns, as well as a rule to resiliently detect parent PID spoofing. |
|
07 Jul 2021 |
15 |
6 |
Included in this release are 3 new rules for the recently observed REvil activity as well as 4 new rules covering the recent PrintNightmare vulnerability. |
|
21 Jun 2021 |
4 |
41 |