Files
splunk-security_content/lookups/splunk_risky_command.yml
pyth0n1c c25e135941 Update splunk_risky_commands file. Remove
unused Other Metadata Column and associated
empty rows.  Remap YML file to point to new one.
Fix quoting issue leading to poorly formatted
line 16.
2024-07-22 14:44:17 -07:00

8 lines
256 B
YAML

description: A list of Risky Splunk Command that are candidates for abuse
filename: splunk_risky_command_20240722.csv
name: splunk_risky_command
default_match: 'false'
match_type: WILDCARD(splunk_risky_command)
min_matches: 1
case_sensitive_match: 'false'