Falco ruleset: OSS2Falco

Sharing a Falco ruleset I put together, based on detection logic from LinPEAS, Sigma and Splunk. Drop it in your Falco config and you’re good to go

Stars welcome :star: