Skip to content

Conversation

@jmorascalyr
Copy link
Contributor

@jmorascalyr jmorascalyr commented Jan 26, 2026

feat: implement domain similarity detection using Levenshtein distance in JQ

  • Add Levenshtein distance algorithm implementation in JQ for typosquatting detection
  • Create domain similarity analysis workflow for AI SIEM integration
  • Support batch processing of domains from network monitoring APIs
  • Include risk assessment with configurable thresholds (high/medium/low risk)
  • Add metadata documentation for workflow automation dependencies
  • Enable detection of phishing domains and brand impersonation attempts

Closes: Domain security monitoring requirements

@jmorascalyr jmorascalyr changed the title Jmorascalyr patch 2 Levenshtein distance in JQ Jan 26, 2026
@nate-smalls-s1 nate-smalls-s1 merged commit 517fb40 into Sentinel-One:main Jan 26, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants