You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
What: We're introducing the ability for users to select which alerts are included as context to LLMs via Attack Discovery
Why: Currently users can only select the number of alerts that are sent as context to LLMs (slider between 50-500) where we would send the most recent alerts. Now, users can control which alerts get sent as well as the time window (previously fixed to Last 24hrs). This makes attack discovery usable for past alerts and find coorelations between specific alerts.
Description
What: We're introducing the ability for users to select which alerts are included as context to LLMs via Attack Discovery
Why: Currently users can only select the number of alerts that are sent as context to LLMs (slider between 50-500) where we would send the most recent alerts. Now, users can control which alerts get sent as well as the time window (previously fixed to Last 24hrs). This makes attack discovery usable for past alerts and find coorelations between specific alerts.
Background & resources
Which documentation set does this change impact?
ESS and serverless
ESS release
8.18
Serverless release
TBD
Feature differences
n.a
API docs impact
TBD
Prerequisites, privileges, feature flags
TBD
The text was updated successfully, but these errors were encountered: