RedELK
RedELK copied to clipboard
💡 Add the possibility to "flag" key events
It would be great to be able to "flag" (with tags
maybe?) some key documents, and potentially add a small description.
This would be useful to be able to extract a high level timeline of the attack for reporting.
Maybe this could be done via the Kibana plugin (I'll investigate that one).
@MarcOverIP / @xychix let me know what you think about the idea 💡
Would be a great addition. Really love that functionality if it's GUI clickable in Kibana.
I believe @xychix has done something internally with jupyter notebooks.