Untitled

| REx: Rule Explorer

This is a collection and breakdown of several of the most popular open security detection rules for analysis and exploration, enabled by the powerful search and visualization capabilities of the Elastic stack!

This is also home to the Detection Engineering Threat Report (DETR)!

The DETR is an interactive threat report, from the perspective of detection engineering, and specifically rule development. It is built on top of the REx project and data, visualized through Kibana dashboards and visualizations.

The Essential Guide to Risk-Based Alerting | Splunk

Best practices to prevent alert fatigue | Datadog

Alerts Are Fundamentally Messy