Creating a D&R Rule from Endpoint Telemetry

Опубликовано: 19 Май 2026
на канале: LimaCharlie
329
5

Learn how easy it is to create a detection and response rule directly from telemetry generated by the LimaCharlie EDR.

----------------------------------
General Links
----------------------------------

Website: https://limacharlie.io

Documentation: https://doc.limacharlie.io/

Free Education: https://edu.limacharlie.io/

----------------------------------
Course Playlists
----------------------------------

Basic Detection & Response:    • Basic Detection & Response  

Advanced Detection & Response:    • Advanced Detection & Response  

Secure Access Service Edge:    • Playlist  

Leveraging Community Resources:    • Leveraging the CLI & SDK  

Setting up An MSSP:    • Setting Up An MSSP with LimaCharlie  

Using the CLI & SDK:    • Leveraging the CLI & SDK  

Ingesting Log Files & Artifacts:    • Ingesting and Processing Artifacts (Window...  

Zeek Network Monitoring:    • Network Artifacts & Zeek  

Incident Response:    • DFIR  

Real-time Windows Event Logs:    • Ingesting Windows Event Logs  

Responding to HAFNIUM:    • HAFNIUM  

The Add-on Marketplace:    • Add-on Marketplace  

----------------------------------
Social Media
----------------------------------

Community Slack Channel: https://slack.limacharlie.io/

Twitter:   / limacharlieio  

Reddit:   / limacharlieio  

LinkedIn:   / limacharlieio  

YouTube:    / limacharlieio  

Github: https://github.com/refractionPOINT