Hello,I think my problem is relatively simple. I have an attribute
"behaviorID"An example of how I would find it in the raw
logs:"behavior_id":["ad23g22d-ge7h-po87-2345-nn367s296186!7504645180225346638"]
the way its currently being parsed is simple u...
Hello. I have these types of logs coming in to the FortiSIEM where the
format changes in the
middle.{"Computer":"InfoHere","EventCategory":1,"EventData":"S-222NameHereContoso0x3e70xc2f8C:\\Windows\\WinSxS\\amd64_microsoft-windows\\TiWorker.exe%%19360...
Thank you cdurkin.For some reason trying the trimAttribute didn't
work.But the replace string did! I totally forgot about this, I have
used it before hehe.I just had to use it 3 lines of
it.replaceStringByRegex($_bid, "\[",
"")replaceStringByRegex($_...