elastic / elastic/detection-rules

[FR] Attack Navigator layer from ndjson export

Open
#2,389 0 comments 0 reactions 1 assignee Claimed by @brokensound77 View on GitHub
backlog community enhancement
Dominant language
Python
Stars
2.7k
Forks
696
Avg merge
4d 17h
Merged PRs (30d)
87

Description

**Is your feature request related to a problem? Please describe.**
This isn't a _problem_ but it would be a nice addition to the detection rules repo. The built-in navigator layers are helpful to visualize Elastic rule coverage, but as many people use their own rules, or duplicate rules from the repo, it doesn't accurately depict a customer's specific rule coverage.

**Describe the solution you'd like**
The ability to use a ndjson output of rules file and turn it into a Navigator layer.

**Additional context**
You're the best @brokensound77 ❤️

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.