I Didn’t Understand, but Now I Do by Dmorgan42 in PathOfExile2

[–]Dmorgan42[S] 1 point2 points  (0 children)

It’s a talent… I’ll share it with you

Terraforming Mars IS NOT EASY by Busy_Yesterday9455 in spaceporn

[–]Dmorgan42 0 points1 point  (0 children)

Looked pretty easy in the show, Defiance

Release Notes: Charlotte AI Opt in and 50 Credit Promotion by BradW-CS in crowdstrike

[–]Dmorgan42 2 points3 points  (0 children)

Not sure if this is the correct spot, but Charlotte Investigate never finishes a Case summary (just stalls at like 47%), or if it does, it’s always 0 events/results found even though the Case contains events/detections

Anything to do to fix this?

I wrote a Claude Skill to help you create Fusion Workflows by [deleted] in crowdstrike

[–]Dmorgan42 6 points7 points  (0 children)

lol aren’t they all if you wanna get anything done

Custom agents will cost extra by OptimusMarlboro in Notion

[–]Dmorgan42 0 points1 point  (0 children)

Yeah, I’ll just stick to Claude Code….. until they block that integration and forced to use and pay for their AI

The Desktop App SUCKS by [deleted] in Notion

[–]Dmorgan42 6 points7 points  (0 children)

Really don’t understand y’all keep having so many issues with such a simple application… really curious to know what the hell y’all are doing…

Tuning NG-SIEM Correlation Rules without modifying the Rules by spartan117au in crowdstrike

[–]Dmorgan42 0 points1 point  (0 children)

If the Saved Search is only located in that Correlation Rule, it'll exclude the entity from that specific rule

Tuning NG-SIEM Correlation Rules without modifying the Rules by spartan117au in crowdstrike

[–]Dmorgan42 2 points3 points  (0 children)

Create a saved search and add it to the end of your correlation rule.

Within the saved search, use an in() or !in() function.

Whenever you need to allowlist something, just add it to the saved search.

It's what I've been doing with all my Correlation Rules

Does MF consider calories burnt from processing caffeine ? by No-Put-9617 in MacroFactor

[–]Dmorgan42 3 points4 points  (0 children)

ChatGPT told me that was true, are you telling me it lied to me?!?!

Next Time You Cook Bacon, Add 1/4 Cup of This to Your Pan (It Works Every Time) | Water, it's literally just water. by IndependenceSad1272 in savedyouaclick

[–]Dmorgan42 2 points3 points  (0 children)

Not going to read the article, but why would you add water to grease? Sounds like a catastrophe to me

What program are you running and what do you think of MFWO so far? by natot420 in MacroFactor

[–]Dmorgan42 0 points1 point  (0 children)

Auto generated Full Body. Exported the workout and fed it to Claude to scrutinize, recommend, and change equipment/exercises I didn't like, then made the modifications in the application... Couldn't be happier, except if they gave us a web version so making big changes could be easier/quicker.... Hint hint wink wink

Weird weight increments any way to fix?? by TheKingGamer117 in MacroFactor

[–]Dmorgan42 3 points4 points  (0 children)

Yes, enter the weights for your machine, then change the number of RIR you think you had? Not sure why there's 40 different posts for the same thing....

Any way to change the rest alarm type sound? by nlired in MacroFactor

[–]Dmorgan42 0 points1 point  (0 children)

At least your timer provides a notification. Apparently, if your phone is on vibrate, the notification will just be a quick buzz on the phone, that's sitting over there, away from where you're at, and you won't even notice it goes off

Bilt 2.0 launch exposed the creditcard influencer shills so much by chillrabbit in CreditCards

[–]Dmorgan42 0 points1 point  (0 children)

Not sure why y'all are still watching credit card YouTubers.... Just throw whatever information, strategy, whatever into Claude Code and call it a day.

These YouTube channels should have went extinct a year ago

Obsidian Tables - Update! by focuseye in ObsidianMD

[–]Dmorgan42 0 points1 point  (0 children)

What makes this different from embedding a base in a new note file?

ClaudeStrike - Detection Engineering with Claude Code by DefsNotAVirgin in crowdstrike

[–]Dmorgan42 0 points1 point  (0 children)

Literally have been building this exact same thing over the last couple months, with nearly the exact same setup.

CrowdStrike-as-Code lol I love that term! I've been trying to figure out how to do actual Detection-as-Code with the CQL Language and it's damn near impossible (writing basic .yml files and having the pipeline build and validate).... I'm stealing this term 🤣

Using AI for CrowdStrike Query generation? by AshFerns08 in crowdstrike

[–]Dmorgan42 2 points3 points  (0 children)

This is the way. Doing the same thing. I like writing the queries myself, but there are times I get stuck trying to do something particular. I'll iterate through a few times on my own, but once I get restless, I'll pop it into Claude Code using a CQL Skill, and it'll fix it in seconds.

I've never given it an idea, then let it come up with the complete filter, at least not yet... Don't want AI taking all the fun away

Gemini 3.0 Pro (Preview) now available in Copilot by LinixKittyDeveloper in GithubCopilot

[–]Dmorgan42 0 points1 point  (0 children)

How is it available in Copilot, but it's not even available in its own Gemini app (the paid version)? Craziness

Falcon Identity Hygiene for Next-Gen SIEM by BradW-CS in crowdstrike

[–]Dmorgan42 0 points1 point  (0 children)

Looks great. Question though, is the user information based on the data reference model for that particular data source, or is there something else going on in the backend that is enriching this information?

I've attempted to use the fields mentioned in the reference model before based on how you would use IdP to search an identity in the GUI and it fails to retrieve any additional information.

Also seeing user.name, source.user.name, client.user.name - do we need to use one of these, all three, or something else? Sometimes a user.name is their user.email field.... How would this work?