Skip to content

Commit 52bc4d5

Browse files
Update README.md
1 parent bf33235 commit 52bc4d5

File tree

1 file changed

+11
-15
lines changed

1 file changed

+11
-15
lines changed

README.md

Lines changed: 11 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,4 @@
1-
<p align="center">
2-
<img src="images/roota_logo.png" />
3-
</p>
1+
![RootA Logo](images/roota_logo_horizontal.png)
42

53
# An Open-Source Language for Collective Cyber Defence
64

@@ -11,13 +9,12 @@ RootA is a public-domain language for collective cyber defense, created to make
119
- [Why RootA](#why_roota)
1210
- [Writing RootA Rules](#writing-roota-rules)
1311
- [How to Contribute](#how-to-contribute)
14-
- [Questions & Feedback](#questions--feedback)
1512
- [Maintainers](#maintainers)
1613
- [Credits](#credits)
1714
- [Licenses](#licenses)
1815
- [Resources & Useful Links](#resources--useful-links)
1916

20-
## Why RootA
17+
## :smiling_face_with_three_hearts: Why RootA
2118
The objective of RootA is to accelerate the global cyber industry collaboration. With RootA acting as a wrapper, cyber defenders can take a native rule or query and augment it with metadata to automatically translate the code into other SIEM, EDR, XDR, and Data Lake languages. Inspired by success of Yara and Sigma rules, RootA is focused on a broader applicability by a larger community of defenders.
2219

2320
- RootA is expressed using **YAML**, a wide-spread, easy-to-write and human-readable format.
@@ -29,7 +26,7 @@ The objective of RootA is to accelerate the global cyber industry collaboration.
2926
- **Mapping to TTPs.** Link detection logic to related tactics, techniques, and procedures in terms of MITRE ATT&CK®. Use custom tags to make the mapping even more tailored and detailed.
3027
- **Response as Code.** With enough community members and industry adoption, the next step after detection is sharing the code to automate response.
3128

32-
## Writing RootA Rules
29+
## :mage: Writing RootA Rules
3330
You can start writing RootA rules in any code editor that supports YAML.
3431
To translate RootA rules to other languages use Uncoder.IO by building it from source https://github.com/UncoderIO/UncoderIO or hosted online privately by SOC Prime since 2018 at https://uncoder.io
3532

@@ -101,7 +98,7 @@ uuid: 151fbb45-0048-497a-95ec-2fa733bb15dc
10198
### Fields
10299
[RootA specification](https://github.com/UncoderIO/RootA/blob/main/RootA_Specification.md) includes the list of all fields that can be used to write a RootA rule.
103100

104-
## How to Contribute
101+
## :cookie: How to Contribute
105102
Your contribution really matters in evolving the project and helping us make the RootA language even more useful for the global cyber defender community.
106103

107104
To submit your pull request with your ideas or suggestions for changes, take the following steps:
@@ -118,21 +115,20 @@ To submit your pull request with your ideas or suggestions for changes, take the
118115

119116
Thank you for your contribution to the RootA project!
120117

121-
## Maintainers
122-
- Roman Ranskyi
123-
- Alex Bredikhin
118+
## :smile_cat: Maintainers
119+
- [Roman Ranskyi](https://www.linkedin.com/in/roman-966b91b5/)
120+
- [Alex Bredikhin](https://www.linkedin.com/in/bredikhin/)
124121
- [Adam Swan](https://github.com/acalarch/)
125-
- Ruslan Mikhalov
122+
- [Ruslan Mikhalov](https://www.linkedin.com/in/rmikhalov/)
126123
- [Andrii Bezverkhyi](https://www.linkedin.com/in/andriimb/)
127124

128-
129-
## Credits
125+
## :clap: Credits
130126
We are genuinely grateful to security professionals who contribute their time, expertise, and creativity to evolve the RootA open-source project.
131127

132-
## Licenses
128+
## :globe_with_meridians: Licenses
133129
The contents of this repo, along with RootA specifications, are in the public domain.
134130

135-
## Resources & Useful Links
131+
## :book: Resources & Useful Links
136132
- [RootA.IO](https://roota.io/) the main website page of the RootA project
137133
- [Uncoder.IO](https://github.com/UncoderIO/UncoderIO/) source code for translation engine Uncoder.IO which supports RootA, Sigma and IOC packaging into specific SIEM, EDR and Data Lake query formats
138134
- [Uncoder.IO](https://uncoder.io/) private hosted version of Uncoder.IO since 2018, operated by SOC Prime, does not track you, does not see your code

0 commit comments

Comments
 (0)