In an earlier blog post, Log monitoring and unstructured log data, moving beyond tail -f, we talked about collecting and working with unstructured log data. We learned that it’s very easy to add data to the Elastic Stack. So far the only parsing we did was to extract the timestamp from this data, so older data gets backfilled correctly. We also talked about searching this … [Read more...] about The importance of runtime fields and schema on write or read for better analytics
Schema
CrowdStrike Jointly Debuts Open Cybersecurity Schema Framework
CrowdStrike is excited to announce the release of the Open Cybersecurity Schema Framework (OCSF) project, a collaborative open-source effort among cybersecurity and technology leaders to break down silos that impede cybersecurity teams’ abilities to quickly and effectively detect, investigate and stop breaches. Detecting and stopping advanced cyberattacks demands coordination … [Read more...] about CrowdStrike Jointly Debuts Open Cybersecurity Schema Framework