Sigma-Specification

This repository is used to maintain the specification for the Sigma format.

Version Management

The version number is in the form of 3 digits 'A.B.C':

  • 'A' A major version that could break existing converters
  • 'B' A minor version with additions or modifications of functionality affecting but not breaking the converters
  • 'C' Reorganization of section, addition of examples etc.

Current Version

Sigma 1.0.1
Taxonomy 1.3.1
Tags 1.0.0

Work in Progress

This section lists upcoming developments and changes to the standard.

Sigma 2.0.0
Sigma Correlations

Archive of Old Specifications

Local copy sigmahq Specification wiki 2022/09/24 or the online sigmahq Specification wiki

SigmaHQ

These files are not part of the sigma specification.
They are an aid for the management of a big rule repository such as the SigmaHQ rule repo

SigmaHQ naming of files