We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 8b62604 commit 64eb7e7Copy full SHA for 64eb7e7
docs/siem/detections/detection-engine-intro.asciidoc
@@ -30,6 +30,12 @@ There are two special prebuilt rules you need to know about:
30
Elastic Endpoint alerts. To receive Elastic Endpoint alerts, you must install
31
the Endpoint agent on your hosts (BEN: see xref).
32
+
33
+When this rule is enabled, the following Endpoint events are displayed as
34
+detection alerts:
35
++
36
+** Malware Prevention Alert
37
+** Malware Detection Alert
38
39
NOTE: When you load the prebuilt rules, this is the only rule that is enabled
40
by default.
41
0 commit comments