diff --git a/.script/tests/detectionTemplateSchemaValidation/ValidConnectorIds.json b/.script/tests/detectionTemplateSchemaValidation/ValidConnectorIds.json index e430e34a47..bbf4b18fa7 100644 --- a/.script/tests/detectionTemplateSchemaValidation/ValidConnectorIds.json +++ b/.script/tests/detectionTemplateSchemaValidation/ValidConnectorIds.json @@ -1,7 +1,7 @@ [ "AIVectraDetect", "AWS", - "AWSGuardDuty", + "AWSS3", "Agari", "AkamaiSecurityEvents", "AlcideKAudit", diff --git a/Detections/AWSGuardDuty/AWS_GuardDuty_template.yaml b/Detections/AWSGuardDuty/AWS_GuardDuty_template.yaml index ad49891fd2..50e4dc2b63 100644 --- a/Detections/AWSGuardDuty/AWS_GuardDuty_template.yaml +++ b/Detections/AWSGuardDuty/AWS_GuardDuty_template.yaml @@ -3,7 +3,7 @@ name: AWS Guard Duty Alert description: 'Amazon GuardDuty is a threat detection service that continuously monitors your AWS accounts and workloads for malicious activity and delivers detailed security findings for visibility and remediation. This templates create an alert for each Amazon GuardDuty finding.' severity: Medium requiredDataConnectors: - - connectorId: AWSGuardDuty + - connectorId: AWSS3 dataTypes: - AWSGuardDuty queryFrequency: 5h