[Feature Request] Improve agentic investigation rigor for malicious behavior detection

Status Open
Reported on v2.1.221
Maintainer reply None cached
Activity 0 comments · opened Aug 5, 2026

Bug Description
I'm literally just building playbooks for a cyber defense tool. I'm saying that the tools agentic team needs to have more rigor when it thinks something is malicious, and go deeper with its investigation to find C2, persistence, or lateral movement. The content of my post is the opposite of a threat.

Environment Info

  • Platform: darwin
  • Terminal: iTerm.app
  • Version: 2.1.221
  • Feedback ID: f75b432d-f00f-404d-b5b0-359a3a9485c1

Errors

[]

View original on GitHub ↗