updating package files

This commit is contained in:
research bot
2019-05-21 23:30:10 +00:00
parent 9f1efafe4c
commit 494feb93e2
4 changed files with 8 additions and 8 deletions
+1 -1
View File
@@ -1,6 +1,6 @@
#############
# Automatically generated by generator.py in splunk/security-content
# On Date: 2019-05-21T19:50:27 UTC
# On Date: 2019-05-21T23:29:56 UTC
# Author: Splunk Security Research
# Contact: research@splunk.com
#############
+1 -1
View File
@@ -4,7 +4,7 @@
is_configured = false
state = enabled
state_change_requires_restart = false
build = @version.build@
build = 651
[triggers]
reload.analytic_stories = simple
+1 -1
View File
@@ -1,6 +1,6 @@
#############
# Automatically generated by generator.py in splunk/security-content
# On Date: 2019-05-21T19:50:27 UTC
# On Date: 2019-05-21T23:29:56 UTC
# Author: Splunk Security Research
# Contact: research@splunk.com
#############
+5 -5
View File
@@ -1,6 +1,6 @@
#############
# Automatically generated by generator.py in splunk/security-content
# On Date: 2019-05-21T19:50:27 UTC
# On Date: 2019-05-21T23:29:56 UTC
# Author: Splunk Security Research
# Contact: research@splunk.com
#############
@@ -2866,16 +2866,16 @@ type = investigation
explanation = none
how_to_implement = To successfully implement this phantom playbook, you must integrate Enterprise Security with Phantom. Configure this playbook in the correlation search `Detect DNS requests to Phishing Sites leveraging EvilGinx2` ,as an adaptive response action.
known_false_positives = None at this time
earliest_time_offset = 0
latest_time_offset = 86400
earliest_time_offset = 86400
latest_time_offset = 0
[savedsearch://ESCU - Excessive Account Lockouts Enrichment And Response]
type = investigation
explanation = none
how_to_implement = Import playbook into phantom
known_false_positives = None at this time
earliest_time_offset = 14400
latest_time_offset = 0
earliest_time_offset = 86400
latest_time_offset = 86400
[savedsearch://ESCU - Get All AWS Activity From City]
type = investigation