Sharing a Falco ruleset I put together, based on detection logic from LinPEAS, Sigma and Splunk. Drop it in your Falco config and you’re good to go
Stars welcome ![]()
Sharing a Falco ruleset I put together, based on detection logic from LinPEAS, Sigma and Splunk. Drop it in your Falco config and you’re good to go
Stars welcome ![]()