mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
version bump
This commit is contained in:
@@ -1,6 +1,6 @@
|
||||
name: ASL AWS Concurrent Sessions From Different Ips
|
||||
id: b3424bbe-3204-4469-887b-ec144483a336
|
||||
version: 6
|
||||
version: 7
|
||||
date: '2024-11-14'
|
||||
author: Patrick Bareiss, Splunk
|
||||
status: production
|
||||
|
||||
+1
-1
@@ -1,6 +1,6 @@
|
||||
name: ASL AWS Detect Users creating keys with encrypt policy without MFA
|
||||
id: 16ae9076-d1d5-411c-8fdd-457504b33dac
|
||||
version: 1
|
||||
version: 2
|
||||
date: '2024-12-16'
|
||||
author: Patrick Bareiss, Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: ASL AWS Disable Bucket Versioning
|
||||
id: f32598bb-fa5f-4afd-8ab3-0263cc28efbc
|
||||
version: 1
|
||||
version: 2
|
||||
date: '2024-12-16'
|
||||
author: Patrick Bareiss, Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: ASL AWS IAM AccessDenied Discovery Events
|
||||
id: a4f39755-b1e2-40bb-b2dc-4449c45b0bf2
|
||||
version: 1
|
||||
version: 2
|
||||
date: '2025-01-08'
|
||||
author: Patrick Bareiss, Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: ASL AWS IAM Assume Role Policy Brute Force
|
||||
id: 726959fe-316d-445c-a584-fa187d64e295
|
||||
version: 1
|
||||
version: 2
|
||||
date: '2025-01-08'
|
||||
author: Patrick Bareiss, Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: AWS Concurrent Sessions From Different Ips
|
||||
id: 51c04fdb-2746-465a-b86e-b413a09c9085
|
||||
version: 5
|
||||
version: 6
|
||||
date: '2024-11-14'
|
||||
author: Bhavin Patel, Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: AWS Detect Users creating keys with encrypt policy without MFA
|
||||
id: c79c164f-4b21-4847-98f9-cf6a9f49179e
|
||||
version: 4
|
||||
version: 5
|
||||
date: '2024-11-14'
|
||||
author: Rod Soto, Patrick Bareiss Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: AWS IAM AccessDenied Discovery Events
|
||||
id: 3e1f1568-9633-11eb-a69c-acde48001122
|
||||
version: 5
|
||||
version: 6
|
||||
date: '2024-11-14'
|
||||
author: Michael Haag, Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: AWS SAML Update identity provider
|
||||
id: 2f0604c6-6030-11eb-ae93-0242ac130002
|
||||
version: 6
|
||||
version: 7
|
||||
date: '2024-11-14'
|
||||
author: Rod Soto, Splunk
|
||||
status: production
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: aws detect attach to role policy
|
||||
id: 88fc31dd-f331-448c-9856-d3d51dd5d3a1
|
||||
version: 4
|
||||
version: 5
|
||||
date: '2024-11-14'
|
||||
author: Rod Soto, Splunk
|
||||
status: deprecated
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: aws detect role creation
|
||||
id: 5f04081e-ddee-4353-afe4-504f288de9ad
|
||||
version: 4
|
||||
version: 5
|
||||
date: '2024-11-14'
|
||||
author: Rod Soto, Splunk
|
||||
status: deprecated
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: aws detect sts assume role abuse
|
||||
id: 8e565314-b6a2-46d8-9f05-1a34a176a662
|
||||
version: 4
|
||||
version: 5
|
||||
date: '2024-11-14'
|
||||
author: Rod Soto, Splunk
|
||||
status: deprecated
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
name: aws detect sts get session token abuse
|
||||
id: 85d7b35f-b8b5-4b01-916f-29b81e7a0551
|
||||
version: 4
|
||||
version: 5
|
||||
date: '2024-11-14'
|
||||
author: Rod Soto, Splunk
|
||||
status: deprecated
|
||||
|
||||
Reference in New Issue
Block a user