Commit Graph

12922 Commits

Author SHA1 Message Date
root f9d9e07f7b Added detection testing service results inRundll32 CreateRemoteThread In Browser 2021-08-05 13:34:25 +00:00
root 4d47c30783 Added detection testing service results inRundll32 Create Remote Thread To A Process 2021-08-05 13:10:18 +00:00
tccontre ede0bd7675 icedid 2021-08-05 13:48:42 +02:00
tccontre 34377e6310 icedid 2021-08-05 13:42:29 +02:00
tccontre 6ccaf94f2f icedid 2021-08-05 13:39:05 +02:00
tccontre c7e8f72fa6 icedid 2021-08-05 13:36:35 +02:00
pyth0n1c d3d5ad4798 yet another change to the branch command... can't find out the branch 2021-08-04 17:02:51 -07:00
pyth0n1c 0d0c323459 Another small change... 2021-08-04 16:57:57 -07:00
pyth0n1c 09050dfae9 One small change to the git branch line 2021-08-04 16:57:15 -07:00
pyth0n1c 60d6562e45 Fixing up shell escapes 2021-08-04 14:27:51 -07:00
pyth0n1c 6dc8b261dc More complex and better way to get branch name from tag? 2021-08-04 13:23:37 -07:00
pyth0n1c c7194e4ece increased the fetch depth? 2021-08-04 12:18:35 -07:00
pyth0n1c f39b33047e Fixed up the tag naming for the --contains argument 2021-08-04 11:15:04 -07:00
pyth0n1c 915968ceea Print out the git log to see everything that is recent... 2021-08-04 11:06:38 -07:00
pyth0n1c faaad71030 Changing up how we get the branch name ofr a tagged release since Actions will not be as cooperative about it as CircleCI... 2021-08-04 10:54:48 -07:00
tccontre 8539d351da icedid 2021-08-04 11:49:52 +02:00
pyth0n1c c4efa7f011 More troubleshooting for tag and branch push functionality 2021-08-03 17:38:16 -07:00
pyth0n1c ecda35ec98 Updating the way that we get the latest branch commit so that we can push to it? 2021-08-03 17:22:10 -07:00
pyth0n1c f90791d73f Now uncommenting the if statement in detection testing. 2021-08-03 15:51:30 -07:00
pyth0n1c e2b9bc79cf Trying to figure out why the seaparate detection testing action is being skipped. 2021-08-03 15:47:58 -07:00
pyth0n1c 3de73c7b6e fixed syntax errors in added stuff to detection-testing 2021-08-03 15:43:35 -07:00
pyth0n1c 99f87c82ef Getting the branch name associated with the tag? 2021-08-03 15:35:08 -07:00
pyth0n1c ab86cbce34 There needs to be at least one step in each of the yaml files. restoring one for testing. 2021-08-03 15:12:26 -07:00
pyth0n1c a23550f3aa testing the naming of branch 2021-08-03 15:05:31 -07:00
pyth0n1c ab1abaa2a4 Fixing up filename again. 2021-08-03 14:22:21 -07:00
pyth0n1c b761a44c1f Fixing filed push in update-sources-github job 2021-08-03 13:33:51 -07:00
peter-cg f8fc79d4e1 Adding event_id extraction 2021-08-03 14:56:18 -05:00
Jose Enrique Hernandez b8fea6311e Delete powershell_encoded_command.yml 2021-08-03 14:56:17 -05:00
divious1 d7000e7608 added event_id to ssa detections 2021-08-03 14:56:17 -05:00
github-actions[bot] d7bd3e880c Branch was auto-updated. 2021-08-03 19:55:29 +00:00
github-actions[bot] a89a087b07 Branch was auto-updated. 2021-08-03 19:55:24 +00:00
peter 62e6c006b0 Merge pull request #1547 from splunk/ssa_TR-778
TR-778: SSA/BA/SAC stage->gstage
2021-08-03 14:55:08 -05:00
peter-cg 23b22e95d4 Event delimiting bugfix and some event upload error checking 2021-08-03 14:53:11 -05:00
pyth0n1c f78f4b17de Removed the 'needs' dependencies from detection-testing. 2021-08-03 12:32:38 -07:00
pyth0n1c 9f4ff3f20c Fixed some missing lines in detection-testiny.yml 2021-08-03 12:27:57 -07:00
pyth0n1c 013209c67e Broke detection testing out into its own workflow. Set certain steps to only run on v tags. 2021-08-03 12:25:23 -07:00
pyth0n1c 16c0a1d315 Created an environment to enforce manual approval of detection testing. 2021-08-03 11:49:35 -07:00
tccontre 51b72ea3b3 icedid 2021-08-03 14:24:34 +02:00
tccontre 3f9c187e11 icedid 2021-08-03 13:00:06 +02:00
pyth0n1c 34a200226a Re-adding testing into the detection step. 2021-07-30 18:07:13 -07:00
pyth0n1c 1ea3985188 Added the proper python version and commented out potential long running task for testing. 2021-07-30 18:02:50 -07:00
pyth0n1c 8125f55ac5 Needed to add aws region as one of the values set in the configure-aws-credentials 2021-07-30 17:54:55 -07:00
pyth0n1c d12e459367 added the configure-aws-credentials action so that we can use boto3 2021-07-30 17:51:43 -07:00
pyth0n1c f96b951492 Another minor syntax issue - extraneous quotation 2021-07-30 17:18:35 -07:00
pyth0n1c b9af26c080 Forgot to comment out one of the steps 2021-07-30 17:14:04 -07:00
pyth0n1c 4d19b93550 Merge branch 'migrate_to_github_actions' of https://github.com/pyth0n1c/security_content into migrate_to_github_actions 2021-07-30 17:12:07 -07:00
pyth0n1c 5c12fe9379 Fixing a syntax error in the way variables are enterted in detection-testing. commented out all the other tests for the sake of speed. 2021-07-30 17:11:58 -07:00
research bot 06fc865cb2 updating docs and package bits [ci skip] 2021-07-30 23:57:13 +00:00
pyth0n1c c974f8e3b6 Merge branch 'migrate_to_github_actions' of https://github.com/pyth0n1c/security_content into migrate_to_github_actions 2021-07-30 16:28:27 -07:00
pyth0n1c 7446e4201f Type (extra quote) in detection testing 2021-07-30 16:24:02 -07:00