Eric
|
d9960562b8
|
Bump versions for every detection, since everything will have a different conf stanza due to added fields. Don't re-bump things that already had their version bumped after the last release - this is a check that now causes a contentctl inspect failure. Finally, update all of the versions to today since this is the last time that the contents of the stanza is different.
|
2025-05-02 14:10:46 -07:00 |
|
Bhavin Patel
|
5b7cfdb7d3
|
updating versions
|
2025-04-16 16:45:16 -07:00 |
|
pyth0n1c
|
580a0873f2
|
Merge branch 'develop' into output_normalization_endpoint
|
2025-03-27 14:53:31 -07:00 |
|
Bhavin Patel
|
c009a27c12
|
add back manual_test
|
2025-03-27 14:01:20 -07:00 |
|
Bhavin Patel
|
cdd70a10aa
|
test with local data
|
2025-03-27 13:32:37 -07:00 |
|
Bhavin Patel
|
f14fd8dc50
|
Merge branch 'develop' into output_normalization_endpoint
|
2025-03-27 10:23:42 -07:00 |
|
Bhavin Patel
|
cacaa8ac07
|
yaml update
|
2025-03-21 11:58:12 -07:00 |
|
Bhavin Patel
|
30135a6a15
|
dd udpate
|
2025-03-21 11:56:19 -07:00 |
|
Bhavin Patel
|
20f1307ddf
|
updating date
|
2025-03-21 11:54:35 -07:00 |
|
Bhavin Patel
|
912238a4a4
|
move to prodcution after testing
|
2025-03-21 11:54:03 -07:00 |
|
Patrick Bareiss
|
1c9debe9a6
|
update versions
|
2025-03-14 13:47:44 +01:00 |
|
Patrick Bareiss
|
00e78ab666
|
output normalisation
|
2025-03-13 14:31:23 +01:00 |
|
Patrick Bareiss
|
ee813d6b39
|
output normalisation
|
2025-03-05 14:25:32 +01:00 |
|
Patrick Bareiss
|
448b2134b2
|
Merge branch 'develop' into output_normalization_endpoint
|
2025-02-26 11:53:41 +01:00 |
|
Patrick Bareiss
|
0f0ec93d2f
|
improved detections
|
2025-02-25 08:53:27 +01:00 |
|
research-bot
|
ebdd770afd
|
udpating name
|
2025-02-20 15:08:25 -08:00 |
|
research-bot
|
d25d712781
|
updating detection
|
2025-02-20 15:07:29 -08:00 |
|
Bhavin Patel
|
49fa1c1900
|
Merge branch 'develop' into cisco_ai_defense
|
2025-02-20 15:02:29 -08:00 |
|
research-bot
|
aba0bdc4d3
|
updating detection
|
2025-02-20 14:47:37 -08:00 |
|
research-bot
|
63facf9e78
|
updating detection
|
2025-02-20 14:47:35 -08:00 |
|
research-bot
|
ecf4948604
|
manual test
|
2025-02-20 08:52:07 -08:00 |
|
Bhavin Patel
|
a7425f0d4f
|
Update cisco_ai_defense_security_alerts.yml
|
2025-02-19 09:52:08 -08:00 |
|
Patrick Bareiss
|
6a53921a8c
|
Merge branch 'develop' into output_normalization_endpoint
|
2025-02-19 12:09:16 +01:00 |
|
pyth0n1c
|
2ae421d724
|
Merge branch 'develop' into fix_datasource_typos
|
2025-02-18 16:24:39 -08:00 |
|
Bhavin Patel
|
9ae1c7acff
|
kfp
|
2025-02-18 08:13:55 -08:00 |
|
Bhavin Patel
|
44ffd97006
|
typo
Co-authored-by: Nasreddine Bencherchali <nasreddineb@splunk.com>
|
2025-02-18 08:05:35 -08:00 |
|
Patrick Bareiss
|
e044e874ba
|
improvements
|
2025-02-18 08:55:49 +01:00 |
|
pyth0n1c
|
f2e7dbfbe7
|
bump versions and dates on modified detections
|
2025-02-17 15:46:23 -08:00 |
|
pyth0n1c
|
4c80dba4de
|
Fix some typos in the data_source fields. Many detections were referencing data sources that ACTUALLY exist, but by the wrong name.
|
2025-02-17 12:11:35 -08:00 |
|
research-bot
|
2933334f4c
|
updaing for validate
|
2025-02-14 13:42:13 -08:00 |
|
research-bot
|
9446ac7782
|
updating test
|
2025-02-14 13:07:47 -08:00 |
|
research-bot
|
c1a10beef5
|
drafting a search
|
2025-02-14 12:53:18 -08:00 |
|
Bhavin Patel
|
2ba144b959
|
Update cisco_secure_application_alerts.yml
|
2025-02-14 12:06:20 -08:00 |
|
research-bot
|
3bb8618ac2
|
updating as per Lou's feedback
|
2025-02-13 15:57:49 -08:00 |
|
Bhavin Patel
|
d5f3bf613f
|
Add manual_test flag
|
2025-02-13 12:24:36 -08:00 |
|
Bhavin Patel
|
0392bfe9c0
|
Update cisco_secure_application_alerts.yml
|
2025-02-13 11:48:16 -08:00 |
|
Bhavin Patel
|
690874895b
|
Merge branch 'develop' into app_dynamics_alerts
|
2025-02-13 11:15:10 -08:00 |
|
research-bot
|
af6077f5f0
|
updating spl
|
2025-02-12 12:25:10 -08:00 |
|
pyth0n1c
|
45599e0b18
|
Clean up MITRE Tagging. When a type is defined, such as T1003, DO NOT allow a subtype such as T1003.001 to be defined. Remove the generic type T1003 and keep the subtype T1003.001. However, it is acceptable for a subtype to be defined or for a type to be defined separately. It is also okay for multiple subtypes to be defined.
|
2025-02-10 12:28:22 -08:00 |
|
research-bot
|
c8aabc01db
|
updating yaml
|
2025-02-05 11:26:47 -08:00 |
|
research-bot
|
76a9a02c9e
|
updating versions
|
2025-02-05 10:49:03 -08:00 |
|
research-bot
|
5e3991de7c
|
updating datasiource
|
2025-02-04 11:59:58 -08:00 |
|
research-bot
|
0544e801b2
|
adding draft detections
|
2025-02-04 11:55:10 -08:00 |
|
research-bot
|
6c3e7df1ad
|
notable to finding 2
|
2025-01-24 17:03:47 -08:00 |
|
research-bot
|
217666c5d1
|
all but one fixes
|
2025-01-23 09:56:40 -08:00 |
|
research-bot
|
3d646fa16d
|
updating version
|
2025-01-21 14:34:51 -08:00 |
|
pyth0n1c
|
d1442c2805
|
remove update_timestamps, confidence, impact,
related_fields, and risk_score from detections
|
2025-01-03 15:25:52 -08:00 |
|
ljstella
|
9f14118bbc
|
application: cleanup tbd messages
|
2024-11-27 12:32:56 -06:00 |
|
Lou Stella
|
88fd263606
|
Merge branch 'develop' into rba_migration
|
2024-11-22 08:36:33 -06:00 |
|
Bhavin Patel
|
c5e2c7ef27
|
Branch was auto-updated.
|
2024-11-19 14:18:39 -08:00 |
|