@@ -74,13 +74,24 @@ IOC-based queries can be generated in the following formats:
74
74
- Microsoft Sentinel Query - ` sentinel-kql-query `
75
75
- Microsoft Defender for Endpoint Query - ` mde-kql-query `
76
76
- Splunk Query - ` splunk-spl-query `
77
- - CrowdStrike Query - ` crowdstrike-spl-query `
78
- - Elasticsearch Query - ` elastic-lucene-query `
77
+ - CrowdStrike Endpoint Security Query - ` crowdstrike-spl-query `
78
+ - Elastic Stack Query - ` elastic-lucene-query `
79
79
- AWS OpenSearch Query - ` opensearch-lucene-query `
80
80
- Falcon LogScale Query - ` logscale-lql-query `
81
81
- IBM QRadar Query - ` qradar-aql-query `
82
82
- AWS Athena Query (Security Lake) - ` athena-sql-query `
83
83
- Chronicle Security Query - ` chronicle-yaral-query `
84
+ - ArcSight Query - ` arcsight `
85
+ - FireEye Query - ` fireeye_helix `
86
+ - Graylog Query - ` graylog-lucene-query `
87
+ - Logpoint Query - ` logpoint `
88
+ - Qualys IOC Query - ` qualys `
89
+ - RSA NetWitness Query - ` rsa_netwitness `
90
+ - Securonix Query - ` securonix `
91
+ - SentinelOne Query (Events) - ` s1-events `
92
+ - Snowflake Query - ` snowflake `
93
+ - Sumo Logic Query - ` sumologic `
94
+ - VMware Carbon Black Query (Cloud) - ` carbonblack `
84
95
85
96
The following types of IOCs are supported:
86
97
- Hash
0 commit comments