Skip to content
This repository has been archived by the owner on Mar 28, 2023. It is now read-only.

Implement file access monitoring #23

Closed
mike-myers-tob opened this issue Feb 26, 2020 · 0 comments
Closed

Implement file access monitoring #23

mike-myers-tob opened this issue Feb 26, 2020 · 0 comments
Labels
blocking Related to blocking logic and rules syntax detections Related to sensors and/or detection capabilities enhancement New feature or request icebox

Comments

@mike-myers-tob
Copy link
Contributor

This should be scoped appropriately to avoid performance overhead. The goals are integrity monitoring (example: nobody should be altering this specific security policy configuration file), and access auditing / lightweight Data Loss Prevention (for examples: assume there's a file with stored AWS credentials, watch to make sure nobody is looking at it that shouldn't be).

@mike-myers-tob mike-myers-tob added enhancement New feature or request detections Related to sensors and/or detection capabilities blocking Related to blocking logic and rules syntax labels Feb 26, 2020
@mike-myers-tob mike-myers-tob added this to the Version 2.0 milestone Feb 26, 2020
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
blocking Related to blocking logic and rules syntax detections Related to sensors and/or detection capabilities enhancement New feature or request icebox
Projects
None yet
Development

No branches or pull requests

2 participants