timesketch icon indicating copy to clipboard operation
timesketch copied to clipboard

Sigma Overview page 2.0

Open jaegeral opened this issue 3 years ago • 2 comments
trafficstars

Stuff that people would like to see on the Sigma overview page:

  • aggregation which rules matched how often
  • Sort table of rules after matches
  • create a view to filter after OS / product etc

jaegeral avatar Jun 03 '22 09:06 jaegeral

aggregation which rules matched how often

From a UX perspective, I would just plainly say "which rules have hits in our sketch"

create a view to filter after os / product

Not sure what you mean by this, can you elaborate what the user journey for this would look like?

tomchop avatar Jun 03 '22 09:06 tomchop

screenshot_1

jaegeral avatar Jun 03 '22 19:06 jaegeral

Will close this issue as we are tracking several of those efforts in different places like aggregations.

jaegeral avatar Feb 07 '23 10:02 jaegeral