mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
b1425aadfa
* Splitting linux_docker_privilege_escalation into two detections, modifying the queries to more precisely trigger on the activity * Adding back original author, removing trailing whitespace * deprecate and update metadata * Update linux_docker_shell_execution.yml --------- Co-authored-by: nasbench <8741929+nasbench@users.noreply.github.com> Co-authored-by: Bhavin Patel <bhavin.j.patel91@gmail.com>