Skip to content

Extensions add platform-specific classes, objects, and attributes to the core OCSF schema. They enable detailed representation of OS-specific events and entities.

  • Linux: The Linux extension defines Linux specific attributes.
  • Windows: The Windows extension defines Windows specific attributes.