Description
Objective
Using a Filebeat module, collect data from the VirusTotal Intelligence Live Hunt notification queue mapping the data to ECS (or associated field mappings), and write the data to Elasticsearch
Approach
Create a Filebeat module using HTTP JSON to pull down the Live Hunt notification queue; and
Filebeat Module / Dataset release checklist
Modules
For a metricset to go GA, the following criterias should be met:
Filebeat module
CC @dcode
Description
Objective
Using a Filebeat module, collect data from the VirusTotal Intelligence Live Hunt notification queue mapping the data to ECS (or associated field mappings), and write the data to Elasticsearch
Approach
Create a Filebeat module using HTTP JSON to pull down the Live Hunt notification queue; and
Filebeat Module / Dataset release checklist
Modules
For a metricset to go GA, the following criterias should be met:
Filebeat module
CC @dcode