Update potential_password_in_username.yml

add JIRA
This commit is contained in:
Bhavin Patel
2025-06-30 11:58:48 -07:00
committed by GitHub
parent e876b8dee5
commit ccc1946e64
@@ -51,7 +51,7 @@ tags:
- Splunk Enterprise Security
- Splunk Cloud
security_domain: access
manual_test: Due to an existing bug with eventtypes/tags in the splunk-add-on-for-unix-and-linux TA, this detection does not work with the latest version of the TA 10.0.0. You can refer to the following link for more information - https://github.com/splunk/splunk-add-on-for-unix-and-linux/issues/608. This detection works as expected with TAs prior to 10.0.0.
manual_test: Due to an existing bug with eventtypes/tags in the splunk-add-on-for-unix-and-linux TA, this detection does not work with the latest version of the TA 10.0.0. You can refer to the following link for more information - https://splunk.atlassian.net/browse/ADDON-81872. This detection works as expected with TAs prior to 10.0.0.
tests:
- name: True Positive Test
attack_data: