Skip to content

Commit

Permalink
Fix the ids associated with a number of playbooks and fix incorrectly…
Browse files Browse the repository at this point in the history
… named referenced detections. Check with Playbook SME to understand the full implications of these changes.
  • Loading branch information
pyth0n1c committed Oct 6, 2023
1 parent 3fce3df commit 7ff0904
Show file tree
Hide file tree
Showing 12 changed files with 12 additions and 12 deletions.
2 changes: 1 addition & 1 deletion playbooks/log4j_investigate.yml
Original file line number Diff line number Diff line change
Expand Up @@ -22,7 +22,7 @@ tags:
- Curl Download and Bash Execution
- Wget Download and Bash Execution
- Linux Java Spawning Shell
- Windows Java Spawning Shell
- Windows Java Spawning Shells
- Java Class File download by Java User Agent
- Outbound Network Connection from Java Using Default Ports
- Log4Shell JNDI Payload Injection Attempt
Expand Down
2 changes: 1 addition & 1 deletion playbooks/log4j_respond.yml
Original file line number Diff line number Diff line change
Expand Up @@ -22,7 +22,7 @@ tags:
- Curl Download and Bash Execution
- Wget Download and Bash Execution
- Linux Java Spawning Shell
- Windows Java Spawning Shell
- Windows Java Spawning Shells
- Java Class File download by Java User Agent
- Outbound Network Connection from Java Using Default Ports
- Log4Shell JNDI Payload Injection Attempt
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_block_indicators.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Block Indicators
id: rn0edc96-ff2b-48b0-9f6f-83da3783fd63
id: 000edc96-ff2b-48b0-9f6f-83da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_enrich.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Enrich
id: rn0edc96-ff2b-48b0-9f6f-43da3783fd63
id: 010edc96-ff2b-48b0-9f6f-43da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_import_data.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Import Data
id: rn0edc96-ff2b-48b0-9f6f-23da3783fd63
id: 020edc96-ff2b-48b0-9f6f-23da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_investigate.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Investigate
id: rn0edc96-ff2b-48b0-9f6f-03da3783fd63
id: 030edc96-ff2b-48b0-9f6f-03da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_merge_events.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Merge Events
id: rn0edc96-ff2b-48b0-9f6f-53da3783fd63
id: 040edc96-ff2b-48b0-9f6f-53da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_mitigate.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Mitigate
id: rn0edc96-ff2b-48b0-9f6f-63da3783fd63
id: 050edc96-ff2b-48b0-9f6f-63da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_preprocess.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Preprocess
id: rn0edc96-ff2b-48b0-9f6f-13da3783fd63
id: 060edc96-ff2b-48b0-9f6f-13da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_protect_assets_and_users.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Protect Assets and Users
id: rn0edc96-ff2b-48b0-9f6f-93da3783fd63
id: 070edc96-ff2b-48b0-9f6f-93da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_review_indicators.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Review Indicators
id: rn0edc96-ff2b-48b0-9f6f-73da3783fd63
id: 080edc96-ff2b-48b0-9f6f-73da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down
2 changes: 1 addition & 1 deletion playbooks/risk_notable_verdict.yml
Original file line number Diff line number Diff line change
@@ -1,5 +1,5 @@
name: Risk Notable Verdict
id: rn0edc96-ff2b-48b0-9f6f-33da3783fd63
id: 090edc96-ff2b-48b0-9f6f-33da3783fd63
version: 1
date: "2021-10-22"
author: Kelby Shelton, Splunk
Expand Down

0 comments on commit 7ff0904

Please sign in to comment.