다음으로 이어서 보기 좋은 문제 Security Intermediate A CrowdSec decision stream is correct and one label enricher still misses attacks The parser is current, but one enricher still tags events with the service name used before the rename. Security Advanced A CrowdSec parser fix is correct and one decision stream still misses attacks The parser is current, but one matcher still reads logs from the pre-refactor nested path. Security Intermediate A SIEM allowlist is updated and one alert still fires The rule looks correct, but one allowlist still contains the earlier source token. Security Advanced An Elastic detection fix is correct and one rule still misclassifies events The rule logic is current, but one ingest pipeline still rewrites event.kind using an earlier fallback map.
Security Intermediate A CrowdSec decision stream is correct and one label enricher still misses attacks The parser is current, but one enricher still tags events with the service name used before the rename.
Security Advanced A CrowdSec parser fix is correct and one decision stream still misses attacks The parser is current, but one matcher still reads logs from the pre-refactor nested path.
Security Intermediate A SIEM allowlist is updated and one alert still fires The rule looks correct, but one allowlist still contains the earlier source token.
Security Advanced An Elastic detection fix is correct and one rule still misclassifies events The rule logic is current, but one ingest pipeline still rewrites event.kind using an earlier fallback map.