Commit 9109929
authored
File tree
1,816 files changed
+137552
-41621
lines changed- .github/workflows
- .script
- package-automation
- tests
- KqlvalidationsTests
- CustomFunctions
- CustomTables
- asimParsersTest
- detectionTemplateSchemaValidation
- utils/workbookCheckers
- ASIM
- deploy/EmptyCustomUnifyingParsers
- dev
- ASimTester
- ASimYaml2ARM
- tools/ASIM compare Tester CSV to Docs
- DataConnectors/AWS-SecurityHubFindings
- Detections/http_proxy_oab_CL
- Hunting Queries
- DeviceProcess
- Microsoft 365 Defender/Email and Collaboration Queries/Phish
- Logos
- Parsers
- ASimAlertEvent
- ARM
- ASimAlertEventMicrosoftDefenderXDR
- ASimAlertEventSentinelOneSingularity
- ASimAlertEvent
- imAlertEvent
- vimAlertEventEmpty
- vimAlertEventMicrosoftDefenderXDR
- vimAlertEventSentinelOneSingularity
- CHANGELOG
- Parsers
- ASimAuditEvent
- ARM
- ASimAuditEventAzureAdminActivity
- ASimAuditEventBarracudaCEF
- ASimAuditEventBarracudaWAF
- ASimAuditEventCiscoISE
- ASimAuditEventCiscoMerakiSyslog
- ASimAuditEventCiscoMeraki
- ASimAuditEventCrowdStrikeFalconHost
- ASimAuditEventIllumioSaaSCore
- ASimAuditEventInfobloxBloxOne
- ASimAuditEventMicrosoftEvent
- ASimAuditEventMicrosoftExchangeAdmin365
- ASimAuditEventMicrosoftSecurityEvents
- ASimAuditEventMicrosoftWindowsEvents
- ASimAuditEventNative
- ASimAuditEventSentinelOne
- ASimAuditEventVMwareCarbonBlackCloud
- ASimAuditEventVectraXDRAudit
- ASimAuditEvent
- imAuditEvent
- vimAuditEventAzureAdminActivity
- vimAuditEventBarracudaCEF
- vimAuditEventBarracudaWAF
- vimAuditEventCiscoISE
- vimAuditEventCiscoMerakiSyslog
- vimAuditEventCiscoMeraki
- vimAuditEventCrowdStrikeFalconHost
- vimAuditEventEmpty
- vimAuditEventIllumioSaaSCore
- vimAuditEventInfobloxBloxOne
- vimAuditEventMicrosoftEvent
- vimAuditEventMicrosoftExchangeAdmin365
- vimAuditEventMicrosoftSecurityEvents
- vimAuditEventMicrosoftWindowsEvents
- vimAuditEventNative
- vimAuditEventSentinelOne
- vimAuditEventVMwareCarbonBlackCloud
- vimAuditEventVectraXDRAudit
- CHANGELOG
- Parsers
- ASimAuthentication
- ARM
- ASimAuthenticationAADManagedIdentity
- ASimAuthenticationAADNonInteractive
- ASimAuthenticationAADServicePrincipalSignInLogs
- ASimAuthenticationAADSigninLogs
- ASimAuthenticationAWSCloudTrail
- ASimAuthenticationBarracudaWAF
- ASimAuthenticationCiscoASA
- ASimAuthenticationCiscoISE
- ASimAuthenticationCiscoMerakiSyslog
- ASimAuthenticationCiscoMeraki
- ASimAuthenticationCrowdStrikeFalconHost
- ASimAuthenticationGoogleWorkspace
- ASimAuthenticationIllumioSaaSCore
- ASimAuthenticationM365Defender
- ASimAuthenticationMicrosoftMD4IoT
- ASimAuthenticationMicrosoftWindowsEvent
- ASimAuthenticationNative
- ASimAuthenticationOktaOSS
- ASimAuthenticationOktaV2
- ASimAuthenticationPaloAltoCortexDataLake
- ASimAuthenticationPostgreSQL
- ASimAuthenticationSalesforceSC
- ASimAuthenticationSentinelOne
- ASimAuthenticationSshd
- ASimAuthenticationSudo
- ASimAuthenticationSu
- ASimAuthenticationVMwareCarbonBlackCloud
- ASimAuthenticationVectraXDRAudit
- ASimAuthentication
- imAuthentication
- vimAuthenticationAADManagedIdentity
- vimAuthenticationAADNonInteractive
- vimAuthenticationAADServicePrincipalSignInLogs
- vimAuthenticationAADSigninLogs
- vimAuthenticationAWSCloudTrail
- vimAuthenticationBarracudaWAF
- vimAuthenticationCiscoASA
- vimAuthenticationCiscoISE
- vimAuthenticationCiscoMerakiSyslog
- vimAuthenticationCiscoMeraki
- vimAuthenticationCrowdStrikeFalconHost
- vimAuthenticationEmpty
- vimAuthenticationGoogleWorkspace
- vimAuthenticationIllumioSaaSCore
- vimAuthenticationM365Defender
- vimAuthenticationMicrosoftMD4IoT
- vimAuthenticationMicrosoftWindowsEvent
- vimAuthenticationNative
- vimAuthenticationOktaOSS
- vimAuthenticationOktaV2
- vimAuthenticationPaloAltoCortexDataLake
- vimAuthenticationPostgreSQL
- vimAuthenticationSalesforceSC
- vimAuthenticationSentinelOne
- vimAuthenticationSshd
- vimAuthenticationSudo
- vimAuthenticationSu
- vimAuthenticationVMwareCarbonBlackCloud
- vimAuthenticationVectraXDRAudit
- CHANGELOG
- Parsers
- ASimDhcpEvent
- ARM
- ASimDhcpEventInfobloxBloxOne
- ASimDhcpEventNative
- ASimDhcpEvent
- imDhcpEvent
- vimDhcpEventEmpty
- vimDhcpEventInfobloxBloxOne
- vimDhcpEventNative
- CHANGELOG
- Parsers
- ASimDns
- ARM
- ASimDnsAzureFirewall
- ASimDnsCiscoUmbrella
- ASimDnsCorelightZeek
- ASimDnsFortinetFortigate
- ASimDnsGcp
- ASimDnsInfobloxBloxOne
- ASimDnsInfobloxNIOS
- ASimDnsMicrosoftNXlog
- ASimDnsMicrosoftOMS
- ASimDnsMicrosoftSysmonWindowsEvent
- ASimDnsMicrosoftSysmon
- ASimDnsNative
- ASimDnsSentinelOne
- ASimDnsVectraAI
- ASimDnsZscalerZIA
- ASimDns
- imDns
- vimDnsAzureFirewall
- vimDnsCiscoUmbrella
- vimDnsCorelightZeek
- vimDnsEmpty
- vimDnsFortinetFortigate
- vimDnsGcp
- vimDnsInfobloxBloxOne
- vimDnsInfobloxNIOS
- vimDnsMicrosoftNXlog
- vimDnsMicrosoftOMS
- vimDnsMicrosoftSysmonWindowsEvent
- vimDnsMicrosoftSysmon
- vimDnsNative
- vimDnsSentinelOne
- vimDnsVectraAI
- vimDnsZscalerZIA
- CHANGELOG
- Parsers
- ASimFileEvent
- ARM
- ASimFileEventAzureBlobStorage
- ASimFileEventAzureFileStorage
- ASimFileEventAzureQueueStorage
- ASimFileEventAzureTableStorage
- ASimFileEventGoogleWorkspace
- ASimFileEventLinuxSysmonFileCreated
- ASimFileEventLinuxSysmonFileDeleted
- ASimFileEventMicrosoft365D
- ASimFileEventMicrosoftSecurityEvents
- ASimFileEventMicrosoftSysmonWindowsEvent
- ASimFileEventMicrosoftSysmon
- ASimFileEventMicrosoftWindowsEvents
- ASimFileEventNative
- ASimFileEventSentinelOne
- ASimFileEventVMwareCarbonBlackCloud
- ASimFileEvent
- imFileEvent
- vimFileEventAzureBlobStorage
- vimFileEventAzureFileStorage
- vimFileEventAzureQueueStorage
- vimFileEventAzureTableStorage
- vimFileEventEmpty
- vimFileEventGoogleWorkspace
- vimFileEventLinuxSysmonFileCreated
- vimFileEventLinuxSysmonFileDeleted
- vimFileEventM365D
- vimFileEventMicrosoftSecurityEvents
- vimFileEventMicrosoftSysmonWindowsEvent
- vimFileEventMicrosoftSysmon
- vimFileEventMicrosoftWindowsEvents
- vimFileEventNative
- vimFileEventSentinelOne
- vimFileEventVMwareCarbonBlackCloud
- CHANGELOG
- Parsers
- ASimNetworkSession
- ARM
- ASimNetworkSessionAWSVPC
- ASimNetworkSessionAppGateSDP
- ASimNetworkSessionAzureFirewall
- ASimNetworkSessionAzureNSG
- ASimNetworkSessionBarracudaCEF
- ASimNetworkSessionBarracudaWAF
- ASimNetworkSessionCheckPointFirewall
- ASimNetworkSessionCiscoASA
- ASimNetworkSessionCiscoFirepower
- ASimNetworkSessionCiscoISE
- ASimNetworkSessionCiscoMerakiSyslog
- ASimNetworkSessionCiscoMeraki
- ASimNetworkSessionCorelightZeek
- ASimNetworkSessionCrowdStrikeFalconHost
- ASimNetworkSessionForcePointFirewall
- ASimNetworkSessionFortinetFortiGate
- ASimNetworkSessionIllumioSaaSCore
- ASimNetworkSessionMD4IoTAgent
- ASimNetworkSessionMD4IoTSensor
- ASimNetworkSessionMicrosoft365Defender
- ASimNetworkSessionMicrosoftLinuxSysmon
- ASimNetworkSessionMicrosoftSecurityEventFirewall
- ASimNetworkSessionMicrosoftSysmonWindowsEvent
- ASimNetworkSessionMicrosoftSysmon
- ASimNetworkSessionMicrosoftWindowsEventFirewall
- ASimNetworkSessionNTANetAnalytics
- ASimNetworkSessionNative
- ASimNetworkSessionPaloAltoCEF
- ASimNetworkSessionPaloAltoCortexDataLake
- ASimNetworkSessionSentinelOne
- ASimNetworkSessionSonicWallFirewall
- ASimNetworkSessionVMConnection
- ASimNetworkSessionVMwareCarbonBlackCloud
- ASimNetworkSessionVectraAI
- ASimNetworkSessionWatchGuardFirewareOS
- ASimNetworkSessionzScalerZIA
- ASimNetworkSession
- imNetworkSession
- vimNetworkSessionAWSVPC
- vimNetworkSessionAppGateSDP
- vimNetworkSessionAzureFirewall
- vimNetworkSessionAzureNSG
- vimNetworkSessionBarracudaCEF
- vimNetworkSessionBarracudaWAF
- vimNetworkSessionCheckPointFirewall
- vimNetworkSessionCiscoASA
- vimNetworkSessionCiscoFirepower
- vimNetworkSessionCiscoISE
- vimNetworkSessionCiscoMerakiSyslog
- vimNetworkSessionCiscoMeraki
- vimNetworkSessionCorelightZeek
- vimNetworkSessionCrowdStrikeFalconHost
- vimNetworkSessionEmpty
- vimNetworkSessionForcePointFirewall
- vimNetworkSessionFortinetFortiGate
- vimNetworkSessionIllumioSaaSCore
- vimNetworkSessionMD4IoTAgent
- vimNetworkSessionMD4IoTSensor
- vimNetworkSessionMicrosoft365Defender
- vimNetworkSessionMicrosoftLinuxSysmon
- vimNetworkSessionMicrosoftSecurityEventFirewall
- vimNetworkSessionMicrosoftSysmonWindowsEvent
- vimNetworkSessionMicrosoftSysmon
- vimNetworkSessionMicrosoftWindowsEventFirewall
- vimNetworkSessionNTANetAnalytics
- vimNetworkSessionNative
- vimNetworkSessionPaloAltoCEF
- vimNetworkSessionPaloAltoCortexDataLake
- vimNetworkSessionSentinelOne
- vimNetworkSessionSonicWallFirewall
- vimNetworkSessionVMConnection
- vimNetworkSessionVMwareCarbonBlackCloud
- vimNetworkSessionVectraAI
- vimNetworkSessionWatchGuardFirewareOS
- vimNetworkSessionzScalerZIA
- CHANGELOG
- Parsers
- ASimProcessEvent
- ARM
- ASimProcessCreateLinuxSysmon
- ASimProcessCreateMicrosoftSecurityEvents
- ASimProcessCreateMicrosoftSysmonWindowsEvent
- ASimProcessCreateMicrosoftSysmon
- ASimProcessCreateMicrosoftWindowsEvents
- ASimProcessCreateSentinelOne
- ASimProcessCreateTrendMicroVisionOne
- ASimProcessCreateVMwareCarbonBlackCloud
- ASimProcessEventCreate
- ASimProcessEventMD4IoT
- ASimProcessEventMicrosoft365D
- ASimProcessEventNative
- ASimProcessEventTerminate
- ASimProcessEvent
- ASimProcessTerminateLinuxSysmon
- ASimProcessTerminateMicrosoftSecurityEvents
- ASimProcessTerminateMicrosoftSysmonWindowsEvent
- ASimProcessTerminateMicrosoftSysmon
- ASimProcessTerminateMicrosoftWindowsEvents
- ASimProcessTerminateVMwareCarbonBlackCloud
- imProcessCreate
- imProcessEvent
- imProcessTerminate
- vimProcessCreateLinuxSysmon
- vimProcessCreateMD4IoT
- vimProcessCreateMicrosoftSecurityEvents
- vimProcessCreateMicrosoftSysmonWidowsEvent
- vimProcessCreateMicrosoftSysmon
- vimProcessCreateMicrosoftWindowsEvents
- vimProcessCreateSentinelOne
- vimProcessCreateTrendMicroVisionOne
- vimProcessCreateVMwareCarbonBlackCloud
- vimProcessEmpty
- vimProcessEventMD4IoT
- vimProcessEventMicrosoft365D
- vimProcessEventNative
- vimProcessTerminateLinuxSysmon
- vimProcessTerminateMD4IoT
- vimProcessTerminateMicrosoftSecurityEvents
- vimProcessTerminateMicrosoftSysmonWindowsEvent
- vimProcessTerminateMicrosoftSysmon
- vimProcessTerminateMicrosoftWindowsEvents
- vimProcessTerminateVMwareCarbonBlackCloud
- CHANGELOG
- Parsers
- ASimRegistryEvent
- ARM
- ASimRegistryEventMicrosoft365D
- ASimRegistryEventMicrosoftSecurityEvent
- ASimRegistryEventMicrosoftSysmonWindowsEvent
- ASimRegistryEventMicrosoftSysmon
- ASimRegistryEventMicrosoftWindowsEvent
- ASimRegistryEventNative
- ASimRegistryEventSentinelOne
- ASimRegistryEventTrendMicroVisionOne
- ASimRegistryEventVMwareCarbonBlackCloud
- ASimRegistryEvent
- imRegistryEvent
- vimRegistryEventEmpty
- vimRegistryEventMicrosoft365D
- vimRegistryEventMicrosoftSecurityEvent
- vimRegistryEventMicrosoftSysmonWindowsEvent
- vimRegistryEventMicrosoftSysmon
- vimRegistryEventMicrosoftWindowsEvent
- vimRegistryEventNative
- vimRegistryEventSentinelOne
- vimRegistryEventTrendMicroVisionOne
- vimRegistryEventVMwareCarbonBlackCloud
- CHANGELOG
- Parsers
- ASimUserManagement
- ARM
- ASimUserManagementAWSCloudTrail
- ASimUserManagementCiscoISE
- ASimUserManagementLinuxAuthpriv
- ASimUserManagementMicrosoftSecurityEvent
- ASimUserManagementMicrosoftWindowsEvent
- ASimUserManagementNative
- ASimUserManagementSentinelOne
- ASimUserManagement
- imUserManagement
- vimUserManagementAWSCloudTrail
- vimUserManagementCiscoISE
- vimUserManagementEmpty
- vimUserManagementLinuxAuthpriv
- vimUserManagementMicrosoftSecurityEvent
- vimUserManagementMicrosoftWindowsEvent
- vimUserManagementNative
- vimUserManagementSentinelOne
- CHANGELOG
- Parsers
- ASimWebSession
- ARM
- ASimWebSessionApacheHTTPServer
- ASimWebSessionAzureFirewall
- ASimWebSessionBarracudaCEF
- ASimWebSessionBarracudaWAF
- ASimWebSessionCiscoFirepower
- ASimWebSessionCiscoMeraki
- ASimWebSessionCitrixNetScaler
- ASimWebSessionF5ASM
- ASimWebSessionFortinetFortiGate
- ASimWebSessionIIS
- ASimWebSessionNative
- ASimWebSessionPaloAltoCEF
- ASimWebSessionPaloAltoCortexDataLake
- ASimWebSessionSonicWallFirewall
- ASimWebSessionSquidProxy
- ASimWebSessionVectraAI
- ASimWebSessionzScalerZIA
- ASimWebSession
- imWebSession
- vimWebSessionApacheHTTPServer
- vimWebSessionAzureFirewall
- vimWebSessionBarracudaCEF
- vimWebSessionBarracudaWAF
- vimWebSessionCiscoFirepower
- vimWebSessionCiscoMeraki
- vimWebSessionCitrixNetScaler
- vimWebSessionEmpty
- vimWebSessionF5ASM
- vimWebSessionFortinetFortiGate
- vimWebSessionIIS
- vimWebSessionNative
- vimWebSessionPaloAltoCEF
- vimWebSessionPaloAltoCortexDataLake
- vimWebSessionSonicWallFirewall
- vimWebSessionSquidProxy
- vimWebSessionVectraAI
- vimWebSessionzScalerZIA
- CHANGELOG
- Parsers
- Sample Data
- ASIM
- Visa Threat Intelligence
- Solutions
- AWS Systems Manager
- Package
- Playbooks
- AWSSystemsManagerPlaybooks/AWS-SSM-GetInstancePatches
- CustomConnector/AWS_SSM_FunctionAppConnector
- GetInventory
- AWSAthena
- Package
- Playbooks/CustomConnector/AWSAthena_FunctionAppConnector
- AWS_AccessLogs
- CloudFormationTemplates
- Package
- Azure Firewall
- Analytic Rules
- Data
- Package
- AzureDevOpsAuditing
- Data Connectors/AzureDevOpsAuditLogs_CCP
- Data
- Package
- BeyondTrustPMCloud
- Data Connectors
- AzureFunctionBeyondTrustPMCloud
- Functions
- Models
- Services
- Data
- Package
- Workbooks
- Images/Preview
- BigID
- Data Connectors/BigIDDSPMLogs_ccp
- Package
- BloodHound Enterprise
- Data Connectors
- Package
- Box/Data Connectors
- Check Point Cyberint IOC
- Data Connectors/CyberintArgosIOCLogs_ccp
- Package
- CiscoDuoSecurity
- Data Connectors
- Data
- Package
- CiscoMeraki
- Connector/MerakiConnector
- Package
- CiscoUmbrella
- Data Connectors
- ciscoUmbrellaDataConn
- Data
- Package
- Commvault Security IQ/Data Connectors
- Corelight
- Data
- Package
- Parsers
- Watchlists/Corelight-GeoCountries
- Workbooks
- Images
- Logo
- Preview/Corelight_AWS_VPC_Flow
- CrowdStrike Falcon Endpoint Protection
- Data Connectors/CrowdStrikeAPI_ccp
- Data
- Package
- CyberArkEPM/DataConnectors
- CyberArkEPMSentinelConnector
- CyrenThreatIntelligence
- Analytic Rules
- Data Connectors
- CyrenThreatIntel_CCF
- Cyren_CCF/Images
- Data
- Package
- Workbooks
- Images/Preview
- DPDP Compliance
- Data
- Package
- Workbooks
- Images/Preview
- ESET Protect Platform/Data Connectors
- Endace
- Data
- Package
- Flare
- Analytic Rules
- Data Connectors
- FlareFireworkEventLogs_ccp
- Data
- Package
- Workbooks
- GitHub
- Analytic Rules
- Data Connectors/GitHubAuditLogs_CCF
- Package
- data
- Global Secure Access
- Analytic Rules
- Data
- Package
- Workbooks
- Google Cloud Platform Audit Logs
- Analytic Rules
- Data
- Hunting Queries
- Package
- Sample Data
- Google Cloud Platform Cloud Monitoring
- Data Connectors
- GCPMonitoringLogs_CCP
- Data
- Package
- GoogleWorkspaceReports
- Data Connectors/GoogleWorkspaceTemplate_ccp
- Data
- Package
- Halcyon
- Package
- IllumioSaaS/Data Connectors
- JoeSandbox
- Data Connectors
- JoeSandbox
- Logo
- Data
- Images
- Package
- Playbooks
- CustomConnector/JoeSandboxEnrichment_FunctionAppConnector
- JoeSandboxDownloadAnalysisReport
- JoeSandboxGetAnalysisInfo
- JoeSandboxGetIOCs
- JoeSandboxGetSubmissionInfo
- JoeSandboxSearchAnalysis
- JoeSandboxSubmitFile
- JoeSandboxSubmitUrl
- JoeSandbox-Submit-File-Outlook-Attachment
- Images
- JoeSandbox-Submit-Url-Sentinel-Incident
- Images
- Lookout Cloud Security Platform for Microsoft Sentinel/Data Connectors/LookoutCSConnector
- Lumen Defender Threat Feed
- Data Connectors
- LumenThreatFeedv2
- LumenThreatFeedConnectorV2
- LumenThreatFeed
- LumenThreatFeedConnector
- activity_cleanup_blob
- activity_get_manifest_page
- activity_upload_from_blob
- orchestrator_function
- timer_starter_function
- Data
- Package
- MailRisk
- Data Connectors/MailRisk_CCP
- Data
- Package
- Microsoft Business Applications/Hunting Queries
- Microsoft Defender XDR
- Analytic Rules
- Data
- Hunting Queries
- Campaigns
- Email and Collaboration Queries
- Microsoft Teams protection
- Phish
- Package
- Microsoft Entra ID
- Analytic Rules
- Data
- Package
- NC Protect Data Connector
- Data Connectors
- Logo
- Data
- Package
- Workbooks
- NISTSP80053
- Package
- Workbooks
- data
- NetApp Ransomware Resilience
- Data
- Playbooks
- NetApp-RansomwareResilience-Auth-Playbook
- NetApp-RansomwareResilience-Manual-IP-to-Offline-Playbook
- NetApp-RansomwareResilience_Async_Poll_Playbook
- NetApp-RansomwareResilience_Enrich_IP_Playbook
- NetApp-RansomwareResilience_Enrich_StorageVM_Playbook
- NetApp-RansomwareResilience_Volume_Offline_Playbook
- NetApp-RansomwareResilience_Volume_Snapshot_Playbook
- NetAppRPS
- Analytic Rules
- Data Connectors
- Data
- Package
- Playbooks
- RPS_Enrich_IP_Playbook
- RPS_Volume_Offline_Playbook
- RPS_Volume_Snapshot_Playbook
- Network Session Essentials
- Hunting Queries
- Package
- Oracle Cloud Infrastructure
- Data Connectors/Oracle_Cloud_Infrastructure_CCP
- Data
- Package
- ProofPointTap
- Data
- Package
- Playbooks/Get-ProofPointTapEvents
- Quokka
- Data Connectors/QuokkaQscoutAppEventsLogs_ccf
- Data
- Package
- Rapid7InsightVM
- Data Connectors
- Data
- Package
- SAP BTP
- Data Connectors/SAPBTPPollerConnector
- Package
- Tools
- SAP
- Agentless
- Tools/IntegrationSuite
- SOC Handbook
- Package
- Workbooks
- SailPointIdentityNow/Data Connectors
- Salesforce Service Cloud
- Data Connectors/SalesforceSentinelConnector_CCP
- Data
- Package
- SecurityScorecard Cybersecurity Ratings/Data Connectors
- SecurityScorecardFactor
- SecurityScorecardIssue
- SecurityScorecardRatings
- SentinelSOARessentials
- Data
- Package
- Workbooks
- Snowflake
- Analytic Rules
- Package
- Squadra Technologies SecRmm
- Data Connectors
- Package
- TacitRed-Defender-ThreatIntelligence
- Data
- Package
- Playbooks
- TacitRedDefenderTI_FunctionApp
- TacitRedToDefenderTI
- Images
- TacitRed-IOC-CrowdStrike
- Data
- Package
- Playbooks
- Images
- TacitRed-SentinelOne
- Data
- Package
- Playbooks
- Images
- TacitRedThreatIntelligence
- Analytic Rules
- Data Connectors/TacitRed_CCF
- Images
- Data
- Package
- Workbooks
- Images/Preview
- Tenable App
- Data Connectors
- TenableIE
- TenableVM
- Data
- Package
- Threat Intelligence (NEW)
- Data
- Package
- Threat Intelligence
- Analytic Rules
- Package
- UEBA Essentials
- Data
- Package
- Workbooks
- VMware Carbon Black Cloud
- Data Connectors
- VMwareCarbonBlackCloud_ccp
- Data
- Package
- VersasecCMS
- Analytic Rules
- Data Connectors/VersasecCMS_CCF
- Data
- Package
- Parsers
- VisaThreatIntelligence_VTI
- Analytic Rules
- Data Connectors
- Workbooks
- Images
- Logo
- Preview
- Windows Security Events
- Analytic Rules
- Package
- WithSecureElementsViaFunction/Data Connectors
- Workday
- Data Connectors/Workday_ccp
- Package
- ZeroTrust(TIC3.0)
- Package
- Workbooks
- data
- archTIS
- Data Connectors
- meshStack
- Data Connectors/meshStackEventLogs_ccp
- Data
- Package
- Tools
- Create-Azure-Sentinel-Solution
- V3
- common
- Microsoft Defender for Office 365
- 1. Microsoft Defender for Office 365 Detections and Insights
- Images
- [Archived]
- Media
- Playbook-ARM-Template-Generator
- Solutions Analyzer
- .cache
- connector-docs
- connectors
- solutions
- graphics
- script-docs
- stats
- Workbooks
- Images
- Logos
- Preview
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
1,816 files changed
+137552
-41621
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| 22 | + | |
| 23 | + | |
22 | 24 | | |
23 | 25 | | |
24 | 26 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| 22 | + | |
| 23 | + | |
22 | 24 | | |
23 | 25 | | |
24 | 26 | | |
| |||
Lines changed: 2 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
| 18 | + | |
| 19 | + | |
18 | 20 | | |
19 | 21 | | |
20 | 22 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| 22 | + | |
| 23 | + | |
22 | 24 | | |
23 | 25 | | |
24 | 26 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| 22 | + | |
| 23 | + | |
22 | 24 | | |
23 | 25 | | |
24 | 26 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| 22 | + | |
| 23 | + | |
22 | 24 | | |
23 | 25 | | |
24 | 26 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
| 18 | + | |
| 19 | + | |
18 | 20 | | |
19 | 21 | | |
20 | 22 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| 22 | + | |
| 23 | + | |
22 | 24 | | |
23 | 25 | | |
24 | 26 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
15 | 15 | | |
16 | 16 | | |
17 | 17 | | |
| 18 | + | |
| 19 | + | |
18 | 20 | | |
19 | 21 | | |
20 | 22 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
| 22 | + | |
| 23 | + | |
22 | 24 | | |
23 | 25 | | |
24 | 26 | | |
| |||
0 commit comments