Jun 30, 2021

New and Noteworthy

  • Logs that have failed to normalize due to a parsing error will now generate misclassification alerts (docs)


  • Updated “Alerts & Errors” page that displays detection matches, detection errors, and system errors clearly


  • Pivot off of p_any fields in the “summary” tab of an alert details page for faster data pivots
  • Quickly copy JSON values in Data Explorer when conducting investigations on indicators

Bug Fixes

  • Schema cloning error: This fixes an error that adds "CopyCopy" to a schema’s ID when cloning it