A Smith
|
9abad28a43
|
Merge pull request #1004 from mozilla/key_update_for_pulseguardian
updating key fields for pulseguardian events to move source_ip to sou…
|
2018-12-18 17:41:47 -06:00 |
A Smith
|
7215580095
|
Merge pull request #964 from mozilla/lower_keys
Lower keys
|
2018-12-18 17:41:27 -06:00 |
Brandon Myers
|
97409a248c
|
Merge pull request #995 from mozilla/add_port_details_root
Move source port and destination port to details root
|
2018-12-18 12:48:56 -06:00 |
Brandon Myers
|
5c0ad15d8a
|
Merge pull request #1006 from mozilla/fix_unused_imports
Remove unused imports
|
2018-12-17 17:41:34 -06:00 |
Brandon Myers
|
d54b5a156c
|
Remove unused imports
|
2018-12-17 17:27:14 -06:00 |
Michal Purzynski
|
3ecbe03b49
|
Merge pull request #947 from mpurzynski/nsm_scan_address
The standard alert version of the Address_Scan
|
2018-12-17 12:34:15 -08:00 |
Michal Purzynski
|
e7af7c93ee
|
Merge pull request #946 from mpurzynski/nsm_scan_random_pr
Hopefuly a final version of an alert that catches a Random_Scan
|
2018-12-17 12:34:04 -08:00 |
Phrozyn
|
365c565023
|
updating key fields for pulseguardian events to move source_ip to sourceipaddress.
|
2018-12-17 10:58:39 -06:00 |
Brandon Myers
|
7dfc6ad913
|
Merge pull request #1003 from mozilla/generic_logincounts
Generic logincounts
|
2018-12-17 10:24:31 -06:00 |
Jeff Bryner
|
92d5c79cf6
|
fixup tests
|
2018-12-15 14:54:31 -08:00 |
Jeff Bryner
|
690f79627e
|
rm unused imports
|
2018-12-15 14:19:07 -08:00 |
Jeff Bryner
|
281df5324c
|
update spacing
|
2018-12-14 15:30:25 -08:00 |
Jeff Bryner
|
1f4d7817f3
|
rename/rework query
|
2018-12-14 15:22:09 -08:00 |
Brandon Myers
|
81b79015d2
|
Merge pull request #1002 from mozilla/update_request_version_dependencies
Update requests version
|
2018-12-14 17:19:24 -06:00 |
Brandon Myers
|
3f9e667611
|
Merge pull request #1001 from mozilla/update_urllib_version
Update urllib3 version
|
2018-12-14 17:19:05 -06:00 |
Brandon Myers
|
06f1b59f45
|
Merge pull request #1000 from mozilla/remove_unused_mozdef_util_files
Remove unused cookie cutter files for mozdef_util
|
2018-12-14 17:18:37 -06:00 |
Brandon Myers
|
8af926d9ef
|
Merge pull request #998 from mozilla/enable_library_unused_pep8_check
Enable library unused pep8 check
|
2018-12-14 17:18:25 -06:00 |
Brandon Myers
|
e1643cf3e2
|
Update requests version
|
2018-12-14 15:21:07 -06:00 |
Brandon Myers
|
9c35aa02a9
|
Update urllib3 version
|
2018-12-14 15:18:21 -06:00 |
Brandon Myers
|
92721f1754
|
Merge pull request #999 from mozilla/auth0_category_fix
match mozdef_client's expectation for set_category
|
2018-12-14 15:21:24 -05:00 |
Brandon Myers
|
2b47045a4b
|
Remove unused cookie cutter files
|
2018-12-14 14:19:50 -06:00 |
Brandon Myers
|
46be867d2f
|
Fixup unused variables check
|
2018-12-14 14:06:21 -06:00 |
Brandon Myers
|
df84a1942d
|
Fixup block comments not having a space after hash
|
2018-12-14 13:40:07 -06:00 |
Brandon Myers
|
77e93f3fd8
|
Fixup missing whitespace around modulo operator
|
2018-12-14 12:53:25 -06:00 |
Brandon Myers
|
be7788089d
|
Fixup missing whitespace around arithmetic operator
|
2018-12-14 12:49:25 -06:00 |
Brandon Myers
|
09989706a0
|
Fixup closing bracket indentation not matching original
|
2018-12-14 12:39:23 -06:00 |
Brandon Myers
|
4d5f70295c
|
Fixup redefinition of unused import statements
|
2018-12-14 12:35:18 -06:00 |
Jeff Bryner
|
feaa882e99
|
match mozdef_client's expectation for set_category
|
2018-12-14 10:33:04 -08:00 |
Brandon Myers
|
0d7ece3d05
|
Fixup W503 line break before binary operation
|
2018-12-14 12:31:08 -06:00 |
Brandon Myers
|
07f5072946
|
Remove duplicate keyname in dict
|
2018-12-14 12:29:04 -06:00 |
Brandon Myers
|
d04485c850
|
Fixup pep8 undefined library
|
2018-12-14 12:27:57 -06:00 |
Brandon Myers
|
00c6715ddf
|
More specific ignore in flake8 config
|
2018-12-14 11:39:18 -06:00 |
Brandon Myers
|
fc771bd531
|
Remove unused import statements
|
2018-12-14 11:34:42 -06:00 |
Brandon Myers
|
65a29dff39
|
Merge pull request #997 from mozilla/jeffbryner-setter-1
update category set
|
2018-12-14 12:33:24 -05:00 |
Jeff Bryner
|
e7cd202d77
|
update category set
use the setter in the mozdef_client object we are using, rather than set a dict key
|
2018-12-13 16:36:47 -08:00 |
Brandon Myers
|
e77b791c8a
|
Merge pull request #934 from mpurzynski/githubevent_pr
A MozDef plugin that parses GitHub's Webhook events to create meaning…
|
2018-12-13 15:52:41 -05:00 |
Michal Purzynski
|
9693dfa58e
|
Address nits from the review - use mozdef_util instead of changing the path, remove unnecessary config file
|
2018-12-12 12:47:12 -08:00 |
Brandon Myers
|
dc3eae0548
|
Merge pull request #996 from mozilla/duo_fixup
Duo fixup
|
2018-12-12 12:57:45 -05:00 |
Jeff Bryner
|
8983cd12ec
|
tabs/spaces fix
|
2018-12-12 09:37:53 -08:00 |
Brandon Myers
|
20777432b7
|
Merge pull request #992 from mozilla/event_source
explicitly accept/map 'source' field, closes #991
|
2018-12-12 11:27:32 -05:00 |
Jeff Bryner
|
ef25be321a
|
update docs for auth event sync
|
2018-12-11 16:33:11 -08:00 |
Jeff Bryner
|
72c51b64a9
|
success only on true, catch other ip field
|
2018-12-11 16:03:33 -08:00 |
Jeff Bryner
|
c774d5921b
|
set details.success to match auth0, other auth sources
|
2018-12-11 15:59:35 -08:00 |
Jeff Bryner
|
d7de9ee7af
|
fix the test assert
|
2018-12-11 09:27:40 -08:00 |
Brandon Myers
|
4e28602162
|
Move source port and destination port to details root
|
2018-12-10 01:55:54 -05:00 |
Brandon Myers
|
809cd91a97
|
Merge pull request #994 from mozilla/fix-proxy_drop_exfil_domains-alert
Proposing fix and a change for proxy alert on exfil domains
|
2018-12-06 17:48:03 -05:00 |
Brandon Myers
|
f6ba4968da
|
Merge pull request #977 from gene1wood/remove-cloudy-mozdef-defaults
Remove CloudFormation template defaults
|
2018-12-06 17:31:19 -05:00 |
Cag
|
43f9ae4463
|
Minor fix to reflect change in the config file name
|
2018-12-06 13:43:46 -05:00 |
Cag
|
c39ac343dc
|
Renaming the config file to reflect the change in alert name
|
2018-12-05 18:14:53 -05:00 |
Cag
|
3a7dcea53b
|
Proposing fix and a change for proxy alert on exfil domains
|
2018-12-05 17:59:43 -05:00 |