NEWNightwatch is live. Autonomous hunting and detection engineering. See how it works See how it works →
Back

How to Find and Track Community Detections in detections.ai

Tim Peck

Written by Tim Peck · Director of Threat Research

Share on social
September 9, 20261 minute read

Find the community detection you need without digging through thousands of rules.

This walkthrough shows you how to use Discover Detections to sort community submissions, search for CVE-focused rules, filter by detection language and recency, and save searches for ongoing monitoring. You’ll also learn how to choose immediate notifications, a daily digest, or no notifications while keeping your filter saved.

Use Discover Detections to quickly find community detections that match your SIEM, query language, and current priorities.

Set it up by:

  1. Open Community > Discover Detections to view detections shared across the platform.
  2. Use the sorting menu to browse recently added, trending, most copied, most liked, or most viewed detections.
  3. Enter a keyword or specific CVE in the search bar.
  4. Select your query language under Detection languages, such as Microsoft Sentinel (KQL).
  5. Use the Updated filter to limit results to a relevant timeframe, such as the last three days.
  6. Click Save, give the search a name, and add it to your saved filters.
  7. Use the notification icon to receive updates Immediately, As a digest, or select Unsubscribe to keep the filter without receiving alerts.

Saved filters make it easier to monitor specific vulnerabilities or detection types without rebuilding the same search each time.

More guides

Subscribe

Stay connected

Join the community that moves faster than the threat.

Subscribe to our newsletter