Conversation
|
Hey @peasead, I'll remove the 1.7.0 label, as feature freeze for this version was a few weeks ago. In ECS we try to focus on concepts, so that the schema can stand the test of time, work across equivalent sources, as well as survive the whims of marketing teams renaming products ;-) Is there any way we could name this other than VirusTotal? |
|
Hey @webmat. Thanks for removing the I'd hesitated with naming it after a vendor, but similar to Zeek and Suricata being the standard in network metadata; they're the standard in malware analysis, so I thought it made sense. That said, would something like This is used for the VT Filebeat module elastic/beats#21815 |
|
Actually, in talking with @dcode I think that we can have the cc @devonakerr |
make test? N/Amakeand committed those changes? N/A