Commit Graph

8127 Commits

Author SHA1 Message Date
github-actions[bot] 2bc052d925 Branch was auto-updated. 2021-06-30 14:42:21 +00:00
Michael Haag 25794989c6 Merge pull request #1468 from splunk/autoencoder_for_anomaly_detection
Notebook describing autoencoders for anomaly detection
2021-06-30 08:41:55 -06:00
Michael Hart 858f567c67 Merge branch 'autoencoder_for_anomaly_detection' of github.com:splunk/security_content into autoencoder_for_anomaly_detection 2021-06-29 14:49:15 -04:00
Michael Hart 8773f14523 More edits 2021-06-29 14:48:27 -04:00
github-actions[bot] 90d62f8358 Branch was auto-updated. 2021-06-29 18:31:00 +00:00
github-actions[bot] 3124d0b301 Branch was auto-updated. 2021-06-29 18:30:59 +00:00
Bhavin Patel fb6f9c82a7 Merge pull request #1462 from splunk/ssa_wevtutil_branch_reversion
[PR-1444] fix branch reversion.
2021-06-29 13:30:38 -05:00
Michael Hart 04c4263b56 Adding edits 2021-06-29 09:47:37 -04:00
Michael Hart 4dbc42c86c Initial commit 2021-06-28 22:10:15 -04:00
github-actions[bot] dc67fbd644 Branch was auto-updated. 2021-06-28 18:29:49 +00:00
github-actions[bot] 52aaa53e40 Branch was auto-updated. 2021-06-28 18:29:47 +00:00
Michael Haag 40278784b2 Merge pull request #1465 from splunk/excessive_sc_start_disable
Excessive number of sc.exe start as disabled calls
2021-06-28 12:29:30 -06:00
Michael Hart d9c8e10920 Slight correction. Process contains cmd line arguments for finding distinct number of sc invocations. Removing this and process id from BY clause 2021-06-28 14:14:42 -04:00
Michael Haag f10bdb4742 Update excessive_number_of_service_control_start_as_disabled.yml 2021-06-28 11:34:18 -06:00
Michael Haag bfa5d036ae Update excessive_number_of_service_control_start_as_disabled.yml 2021-06-28 10:35:29 -06:00
Michael Haag ae269feb4b Update excessive_number_of_service_control_start_as_disabled.yml 2021-06-28 10:35:01 -06:00
github-actions[bot] d57b067af1 Branch was auto-updated. 2021-06-28 16:09:43 +00:00
github-actions[bot] f17961abd1 Branch was auto-updated. 2021-06-28 16:09:41 +00:00
github-actions[bot] 46d89a16e5 Branch was auto-updated. 2021-06-28 16:09:39 +00:00
Jose Enrique Hernandez c5919dee1f Merge pull request #1467 from splunk/doc_gen_bug
doc gen bug
2021-06-28 12:09:20 -04:00
divious1 8ae54e8e1e this was brough up by doc team, it was causing docs to not be updated 2021-06-25 15:54:57 -04:00
github-actions[bot] ab932a64f9 Branch was auto-updated. 2021-06-25 19:51:26 +00:00
github-actions[bot] d67e5ced6a Branch was auto-updated. 2021-06-25 19:51:24 +00:00
github-actions[bot] 874a906d4b Branch was auto-updated. 2021-06-25 19:51:21 +00:00
Jose Enrique Hernandez 8ab5325de6 Merge pull request #1466 from splunk/mustang_fixing_names
Mustang fixing names
2021-06-25 15:51:05 -04:00
root d184ff8b1e Added detection testing service results inExcessive number of service control start as disabled 2021-06-25 19:29:17 +00:00
divious1 30b6ec1eed Revert "changing O365 to Office 365"
This reverts commit b05af9f100.
2021-06-25 15:05:19 -04:00
divious1 022c5be43e Revert "updated AWS IAM to AWS Identity Access Manager (IAM) in all detections to fit mustang required naming"
This reverts commit 45c138d518.
2021-06-25 15:03:55 -04:00
Michael Hart 1a26fc38e3 contentctl puts relative link to detection file in wrong place 2021-06-25 15:00:46 -04:00
Michael Hart 98a7b4e3ff Adding references 2021-06-25 14:56:08 -04:00
divious1 b05af9f100 changing O365 to Office 365 2021-06-25 14:52:58 -04:00
divious1 f262360d0a updated CloudTrails to AWS CloudTrails 2021-06-25 14:50:50 -04:00
Michael Hart 518d03b1a1 Detection looks for excessive number of sc.exe start as disabled calls 2021-06-25 14:48:48 -04:00
divious1 45c138d518 updated AWS IAM to AWS Identity Access Manager (IAM) in all detections to fit mustang required naming 2021-06-25 14:44:02 -04:00
github-actions[bot] 5c1431addd Branch was auto-updated. 2021-06-25 13:14:26 +00:00
github-actions[bot] 23861ef01a Branch was auto-updated. 2021-06-25 13:14:23 +00:00
Jose Enrique Hernandez 9011c52d9c Merge pull request #1463 from splunk/fixing_reporting_bugs
Coverage reporting 101% .. mathematically incorrect.
2021-06-25 09:14:04 -04:00
divious1 b29a96d222 Merge branch 'fixing_reporting_bugs' of github.com:splunk/security_content into fixing_reporting_bugs 2021-06-25 08:41:54 -04:00
divious1 3c39aa59ae with the change of the default image pip is treated slightly different 2021-06-25 08:41:48 -04:00
github-actions[bot] 5a9d1122f4 Branch was auto-updated. 2021-06-25 07:49:35 +00:00
github-actions[bot] 7fc55957df Branch was auto-updated. 2021-06-25 07:49:28 +00:00
github-actions[bot] 93c7997b49 Branch was auto-updated. 2021-06-25 07:49:24 +00:00
tccontre e72f6c6cea Merge pull request #1464 from splunk/fixing_doc_gen_ci_issue
doc_gen.py issues with pyattck
2021-06-25 09:49:10 +02:00
divious1 3acbb20716 Merge branch 'fixing_doc_gen_ci_issue' into fixing_reporting_bugs 2021-06-24 23:31:36 -04:00
divious1 76107973ac changing ci logic and doc_gen logic to not use pyattck any longer, lib has issues 2021-06-24 23:28:08 -04:00
divious1 ea80ec525b removing go 2021-06-24 15:57:07 -04:00
divious1 df8ff867bb updating circleci image since there is a breaking change 2021-06-24 15:08:40 -04:00
divious1 7cc3e82403 fixing a bug in how data is reported also added some additonal print statements 2021-06-24 14:44:11 -04:00
research bot eb3a3607f0 updating docs and package bits [ci skip] 2021-06-24 18:23:02 +00:00
jzsplunk 5d39a5eed2 [PR-1444] fix branch reversion. 2021-06-24 01:36:15 -07:00