Comments (3)
Just checking in on this as I am experiencing the same issue. Stdout reports 71 detections, but JSON only contains 42. However, my JSON does contain some of the builtin detections, just not all of them. This may be resolved by the same bug fix, but just bringing it to your attention.
Any progress on a fix? Hoping to get this Velociraptor artifact patched ASAP as it relies on the incomplete JSON results at this time.
from chainsaw.
Due to the complexity of how builtins work and the required breaking changes to then expose this in the JSON. I am going to resolve this in the v2 work, but i cant give a timeframe for when i will have time to finish it off. Although i have done the bulk of the work already.
from chainsaw.
Right this is solved in v2.0.0-alpha.x so am closing this out. Feed back on the output format should be given in #77.
from chainsaw.
Related Issues (20)
- chrono-tz phf dependency HOT 6
- Issue with linux bash execution by multi directories
- Chainsaw uses a lot of RAM when processing large individual files with a large number of detections HOT 29
- Count column HOT 9
- Incorrect hunt examples displayed HOT 1
- Definition of "logsource" values like product or category. HOT 12
- Add timestamp format to help output HOT 2
- Deserialization error does't not show responsible file HOT 2
- Invalid Tau Key Pair error HOT 2
- Hunt with WEC/WEF HOT 2
- keyless identifiers cannot be converted HOT 3
- Check for potential I/0 error before processing HOT 1
- Erroneous Sigma Results using Hunt option HOT 7
- chainsaw project name collides with another rust project HOT 2
- Tau EventID Filter error HOT 6
- Issue opened in error
- Inconsistent data type parsing between JSON and XML HOT 3
- Is it possible to parse .json/.jsonl files that contain other log formats? HOT 5
- Issue with CSV output not populating "Event Data" row HOT 2
- Chainsaw 2 Doesn't Recognize .evt Files HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from chainsaw.