As cited
Copy frozen at (site build).
industry
Announcing the Elastic Bounty Program for Behavior Rule Protections
Elastic has launched an expansion of its security bounty program that invites researchers to test its security information and event management (SIEM) and endpoint detection and response (EDR) behavior rules for evasion and bypass techniques, beginning with Windows endpoints. The program aims to improve Elastic's defensive capabilities through community collaboration.
Why it matters: Security teams using Elastic's SIEM or EDR should monitor this program's findings to understand potential blind spots in their detection rules and apply any resulting improvements.
- Source published
- First seen by Cybersecurity Tracker