Skip to content

Releases: SigmaHQ/pySigma-backend-crowdstrike

v3.0.0

30 Nov 01:45

Choose a tag to compare

What's Changed

  • Appending functionality to detect product: macos by @IzzyBoop in #22
  • Updated to pySigma 1.0

New Contributors

Full Changelog: v2.0.1...v3.0.0

v2.1.0rc1

17 Aug 12:21

Choose a tag to compare

v2.1.0rc1 Pre-release
Pre-release

Update to pySigma 1.0.0rc1 with minor refactoring to establish compatibility.

v2.0.1

13 Oct 23:38

Choose a tag to compare

What's Changed

  • Escape curly brackets by @moullos in #16
  • Removing allowed backends by @moullos in #18
  • Fix: preserve placeholders in fields with replacements by @thomaspatzke
  • Fix: Trailing wildcards were escaped by string replacement if slash was contained at the end of the string by @thomaspatzke

Full Changelog: v2.0.0...v2.0.1

v2.0.0

14 Sep 23:36

Choose a tag to compare

What's Changed

New Contributors

Full Changelog: v1.0.3...v2.0.0

v1.0.3

09 Feb 23:49

Choose a tag to compare

Update to pySigma 0.11

Full Changelog: v1.0.2...v1.0.3

v1.0.2

02 Jan 00:37

Choose a tag to compare

Added SyntheticProcessRollup2 event type mapping of process creation events.

v1.0.1

30 Aug 20:32

Choose a tag to compare

Updated to pySigma 0.10

v1.0.0

16 Feb 07:50

Choose a tag to compare

  • Added plugin metadata
  • Relaxed ParentImage restriction: image path patterns without a slash are now allowed, e.g. *name.exe.

pySigma CrowdStrike Pipeline 0.1.8

17 Sep 23:07

Choose a tag to compare

Updated to pySigma 0.8.

pySigma CrowdStrike Pipeline 0.1.7

31 Jul 23:22

Choose a tag to compare

Updated to pySigma 0.7.