This commit is contained in:
v-sabiraj 2022-11-15 23:16:25 +05:30
Родитель 1bd1098df8
Коммит e37b24c8a0
14 изменённых файлов: 172 добавлений и 2 удалений

Просмотреть файл

@ -1248,5 +1248,55 @@
"id": "6db4b928-4029-454e-a4e3-cf761db681e8",
"templateName": "EmailEntity_SecurityAlert.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "e098d139-17f2-4ac7-b80d-fcf40dde423f",
"templateName": "EmailEntity_SecurityEvent.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "6d33f647-149a-4339-9db7-0cbf7d7c4e60",
"templateName": "EmailEntity_SigninLogs.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "6bbefa0a-d0f2-4a45-91a5-9b8f332edb41",
"templateName": "FileHashEntity_CommonSecurityLog.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "2729127c-fc57-4bc8-9c4f-0ddec154e737",
"templateName": "FileHashEntity_SecurityEvent.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "c3591644-c626-4b21-9513-48b6e6671d1c",
"templateName": "IPEntity_AWSCloudTrail.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "af732dbd-af8d-42e6-8b62-a69150a0d35d",
"templateName": "IPEntity_AppServiceHTTPLogs.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "2e98fb56-1cd4-40c0-97fa-7005244206ec",
"templateName": "IPEntity_AzureActivity.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "299e2855-1197-47ef-9684-e65037b7d200",
"templateName": "IPEntity_AzureFirewall.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "39790330-df61-427b-a315-0aad296ab755",
"templateName": "IPEntity_AzureKeyVault.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
},
{
"id": "a5bc4f1d-a51a-4882-bb1b-a0fd11fb156a",
"templateName": "IPEntity_AzureNetworkAnalytics.yaml",
"validationFailReason": "Since the content moved to new location, created dummy file with guidence for redirecting the customers to new location"
}
]

Просмотреть файл

@ -222,5 +222,15 @@
"ac77f22a-7280-4f24-abc4-988bd13dc38e",
"9af36b10-cab1-4372-9cbc-46a2f008ed49",
"6bb63ef4-9083-4dc3-bc48-7aeb569b13b2",
"6db4b928-4029-454e-a4e3-cf761db681e8"
"6db4b928-4029-454e-a4e3-cf761db681e8",
"e098d139-17f2-4ac7-b80d-fcf40dde423f",
"6d33f647-149a-4339-9db7-0cbf7d7c4e60",
"6bbefa0a-d0f2-4a45-91a5-9b8f332edb41",
"2729127c-fc57-4bc8-9c4f-0ddec154e737",
"c3591644-c626-4b21-9513-48b6e6671d1c",
"af732dbd-af8d-42e6-8b62-a69150a0d35d",
"2e98fb56-1cd4-40c0-97fa-7005244206ec",
"299e2855-1197-47ef-9684-e65037b7d200",
"39790330-df61-427b-a315-0aad296ab755",
"a5bc4f1d-a51a-4882-bb1b-a0fd11fb156a"
]

Просмотреть файл

@ -249,5 +249,15 @@
"ac77f22a-7280-4f24-abc4-988bd13dc38e",
"9af36b10-cab1-4372-9cbc-46a2f008ed49",
"6bb63ef4-9083-4dc3-bc48-7aeb569b13b2",
"6db4b928-4029-454e-a4e3-cf761db681e8"
"6db4b928-4029-454e-a4e3-cf761db681e8",
"e098d139-17f2-4ac7-b80d-fcf40dde423f",
"6d33f647-149a-4339-9db7-0cbf7d7c4e60",
"6bbefa0a-d0f2-4a45-91a5-9b8f332edb41",
"2729127c-fc57-4bc8-9c4f-0ddec154e737",
"c3591644-c626-4b21-9513-48b6e6671d1c",
"af732dbd-af8d-42e6-8b62-a69150a0d35d",
"2e98fb56-1cd4-40c0-97fa-7005244206ec",
"299e2855-1197-47ef-9684-e65037b7d200",
"39790330-df61-427b-a315-0aad296ab755",
"a5bc4f1d-a51a-4882-bb1b-a0fd11fb156a"
]

Просмотреть файл

@ -0,0 +1,4 @@
id: "e098d139-17f2-4ac7-b80d-fcf40dde423f"
name: "TI map Email entity to SecurityEvent"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "6d33f647-149a-4339-9db7-0cbf7d7c4e60"
name: "TI map Email entity to SigninLogs"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "6bbefa0a-d0f2-4a45-91a5-9b8f332edb41"
name: "TI map File Hash to CommonSecurityLog Event"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "2729127c-fc57-4bc8-9c4f-0ddec154e737"
name: "TI map File Hash to Security Event"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "c3591644-c626-4b21-9513-48b6e6671d1c"
name: "TI map IP entity to AWSCloudTrail"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "af732dbd-af8d-42e6-8b62-a69150a0d35d"
name: "TI map IP entity to AppServiceHTTPLogs"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "2e98fb56-1cd4-40c0-97fa-7005244206ec"
name: "TI map IP entity to AzureActivity"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "299e2855-1197-47ef-9684-e65037b7d200"
name: "TI map IP entity to AzureFirewall"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "39790330-df61-427b-a315-0aad296ab755"
name: "TI map IP entity to Azure Key Vault logs"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -0,0 +1,4 @@
id: "a5bc4f1d-a51a-4882-bb1b-a0fd11fb156a"
name: "TI map IP entity to AzureNetworkAnalytics_CL (NSG Flow Logs)"
description: |
As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence'

Просмотреть файл

@ -802,5 +802,65 @@
"DetectionId": "a2e36ce0-da4d-4b6e-88c6-4e40161c5bfc",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "EmailEntity_SecurityEvent.yaml",
"DetectionId": "2fc5d810-c9cc-491a-b564-841427ae0e50",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "EmailEntity_SigninLogs.yaml",
"DetectionId": "30fa312c-31eb-43d8-b0cc-bcbdfb360822",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "FileHashEntity_CommonSecurityLog.yaml",
"DetectionId": "5d33fc63-b83b-4913-b95e-94d13f0d379f",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "FileHashEntity_SecurityEvent.yaml",
"DetectionId": "a7427ed7-04b4-4e3b-b323-08b981b9b4bf",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "IPEntity_AWSCloudTrail.yaml",
"DetectionId": "f110287e-1358-490d-8147-ed804b328514",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "IPEntity_AppServiceHTTPLogs.yaml",
"DetectionId": "f9949656-473f-4503-bf43-a9d9890f7d08",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "IPEntity_AzureActivity.yaml",
"DetectionId": "2441bce9-02e4-407b-8cc7-7d597f38b8b0",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "IPEntity_AzureFirewall.yaml",
"DetectionId": "0b904747-1336-4363-8d84-df2710bfe5e7",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "IPEntity_AzureKeyVault.yaml",
"DetectionId": "57c7e832-64eb-411f-8928-4133f01f4a25",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
},
{
"FileName": "IPEntity_AzureNetworkAnalytics.yaml",
"DetectionId": "a4025a76-6490-4e6b-bb69-d02be4b03f07",
"OldPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Detections/ThreatIntelligenceIndicator/",
"NewPath": "https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Threat%20Intelligence/Analytic%20Rules"
}
]