gwin 0 Posted July 25 Share Posted July 25 Hello everyone EEI/EI is one of great product, iam use yearly to help me and my team to know issue of malware and similiar yet. i try to know this product step by step, and my question can EEI integration with Mitre ATT&CK and use external rules like Yara and Sigma rules. because on base knowledge i am not find this topic, one of i find create rules with base .xml : https://help.eset.com/tools/ei/ei_rules_guide_1.7.pdf i think its good for eei can use external rules to improve existing database rule list and detection Quote Link to comment Share on other sites More sharing options...
Administrators Marcos 4,295 Posted July 25 Administrators Share Posted July 25 No, you must create ESET Inspect rules to detect particular behavior. They are very different to Yara rules since they are based on ESET's features provided by ESET security products. Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.