Commit 99b669a
committed
File tree
623 files changed
+31639
-16590
lines changed- .github/workflows
- .script
- package-automation
- tests
- KqlvalidationsTests
- CustomFunctions
- CustomTables
- asimParsersTest
- detectionTemplateSchemaValidation
- Models
- ASIM/dev/ASimTester
- DataConnectors
- AWS-S3
- M365Defender-VulnerabilityManagement
- maintenance
- modules
- Logos
- Parsers
- ASimAuditEvent
- ARM
- ASimAuditEventAzureAdminActivity
- ASimAuditEventBarracudaCEF
- ASimAuditEventBarracudaWAF
- ASimAuditEventCiscoISE
- ASimAuditEventCiscoMerakiSyslog
- ASimAuditEventCiscoMeraki
- ASimAuditEventCrowdStrikeFalconHost
- ASimAuditEventMicrosoftEvent
- ASimAuditEventMicrosoftExchangeAdmin365
- ASimAuditEventMicrosoftSecurityEvents
- ASimAuditEventMicrosoftWindowsEvents
- ASimAuditEventNative
- ASimAuditEventSentinelOne
- ASimAuditEventVMwareCarbonBlackCloud
- ASimAuditEventVectraXDRAudit
- ASimAuditEvent
- imAuditEvent
- vimAuditEventAzureAdminActivity
- vimAuditEventBarracudaCEF
- vimAuditEventBarracudaWAF
- vimAuditEventCiscoISE
- vimAuditEventCiscoMerakiSyslog
- vimAuditEventCiscoMeraki
- vimAuditEventCrowdStrikeFalconHost
- vimAuditEventEmpty
- vimAuditEventMicrosoftEvent
- vimAuditEventMicrosoftExchangeAdmin365
- vimAuditEventMicrosoftSecurityEvents
- vimAuditEventMicrosoftWindowsEvents
- vimAuditEventNative
- vimAuditEventSentinelOne
- vimAuditEventVMwareCarbonBlackCloud
- vimAuditEventVectraXDRAudit
- Parsers
- ASimAuthentication
- ARM
- ASimAuthenticationAADManagedIdentity
- ASimAuthenticationAADNonInteractive
- ASimAuthenticationAADServicePrincipalSignInLogs
- ASimAuthenticationAADSigninLogs
- ASimAuthenticationAWSCloudTrail
- ASimAuthenticationBarracudaCEF
- ASimAuthenticationBarracudaWAF
- ASimAuthenticationCiscoASA
- ASimAuthenticationCiscoISE
- ASimAuthenticationCiscoMerakiSyslog
- ASimAuthenticationCiscoMeraki
- ASimAuthenticationCrowdStrikeFalconHost
- ASimAuthenticationGoogleWorkspace
- ASimAuthenticationIllumioSaaSCore
- ASimAuthenticationM365Defender
- ASimAuthenticationMicrosoftMD4IoT
- ASimAuthenticationMicrosoftSecurityEvents
- ASimAuthenticationMicrosoftWindowsEvent
- ASimAuthenticationNative
- ASimAuthenticationOktaOSS
- ASimAuthenticationOktaV2
- ASimAuthenticationPaloAltoCortexDataLake
- ASimAuthenticationPostgreSQL
- ASimAuthenticationSalesforceSC
- ASimAuthenticationSentinelOne
- ASimAuthenticationSshd
- ASimAuthenticationSudo
- ASimAuthenticationSu
- ASimAuthenticationVMwareCarbonBlackCloud
- ASimAuthenticationVectraXDRAudit
- ASimAuthentication
- imAuthentication
- vimAuthenticationAADManagedIdentity
- vimAuthenticationAADNonInteractive
- vimAuthenticationAADServicePrincipalSignInLogs
- vimAuthenticationAADSigninLogs
- vimAuthenticationAWSCloudTrail
- vimAuthenticationBarracudaWAF
- vimAuthenticationCiscoASA
- vimAuthenticationCiscoISE
- vimAuthenticationCiscoMerakiSyslog
- vimAuthenticationCiscoMeraki
- vimAuthenticationCrowdStrikeFalconHost
- vimAuthenticationEmpty
- vimAuthenticationGoogleWorkspace
- vimAuthenticationIllumioSaaSCore
- vimAuthenticationM365Defender
- vimAuthenticationMicrosoftMD4IoT
- vimAuthenticationMicrosoftWindowsEvent
- vimAuthenticationNative
- vimAuthenticationOktaOSS
- vimAuthenticationOktaV2
- vimAuthenticationPaloAltoCortexDataLake
- vimAuthenticationPostgreSQL
- vimAuthenticationSalesforceSC
- vimAuthenticationSentinelOne
- vimAuthenticationSshd
- vimAuthenticationSudo
- vimAuthenticationSu
- vimAuthenticationVMwareCarbonBlackCloud
- vimAuthenticationVectraXDRAudit
- Parsers
- Tests
- ASimRegistryEvent/ARM/ASimRegistry
- ASimWebSession
- ARM
- ASimWebSessionApacheHTTPServer
- ASimWebSessionBarracudaCEF
- ASimWebSessionBarracudaWAF
- ASimWebSessionCiscoFirepower
- ASimWebSessionCiscoMerakiSyslog
- ASimWebSessionCiscoMeraki
- ASimWebSessionCitrixNetScaler
- ASimWebSessionF5ASM
- ASimWebSessionFortinetFortiGate
- ASimWebSessionIIS
- ASimWebSessionNative
- ASimWebSessionPaloAltoCEF
- ASimWebSessionPaloAltoCortexDataLake
- ASimWebSessionSonicWallFirewall
- ASimWebSessionSquidProxy
- ASimWebSessionVectraAI
- ASimWebSessionzScalerZIA
- ASimWebSession
- imWebSession
- vimWebSessionApacheHTTPServer
- vimWebSessionBarracudaCEF
- vimWebSessionBarracudaWAF
- vimWebSessionCiscoFirepower
- vimWebSessionCiscoMerakiSyslog
- vimWebSessionCiscoMeraki
- vimWebSessionCitrixNetScaler
- vimWebSessionEmpty
- vimWebSessionF5ASM
- vimWebSessionFortinetFortiGate
- vimWebSessionIIS
- vimWebSessionNative
- vimWebSessionPaloAltoCEF
- vimWebSessionPaloAltoCortexDataLake
- vimWebSessionSonicWallFirewall
- vimWebSessionSquidProxy
- vimWebSessionVectraAI
- vimWebSessionzScalerZIA
- Parsers
- Test
- Sample Data
- ASIM
- Solutions
- AbnormalSecurity/Data Connectors
- SentinelFunctionsOrchestrator
- Tests
- AristaAwakeSecurity
- Analytic Rules
- Data
- Package
- Azure Cloud NGFW by Palo Alto Networks
- Analytic Rules
- Hunting Queries
- Package
- Workbooks
- CTERA/Package
- Check Point CloudGuard CNAPP
- Package
- Cisco Meraki Events via REST API
- Data Connectors/CiscoMerakiMultiRule_ccp
- Package
- CrowdStrike Falcon Endpoint Protection
- Data Connectors
- CrowdstrikeReplicatorCLv2
- CrowdstrikeFalconAPISentinelConn/QueueTriggerCS
- CrowdstrikeReplicator
- CrowdstrikeFalconAPISentinelConnector
- Data
- Package
- Parsers
- Digital Guardian Data Loss Prevention
- Analytic Rules
- Data
- Hunting Queries
- Package
- Dragos
- Analytic Rules
- Data Connectors/DragosSiteStore_CCP
- Data
- Package
- Parsers
- Sample Data
- DruvaDataSecurityCloud
- Data Connectors
- Druva_ccp
- Logo
- Data
- Package
- Playbooks
- DruvaQuarantineEnterpriseWorkload
- DruvaQuarantineInsyncWorkloads
- DruvaQuarantineUsingResourceID
- Exabeam Advanced Analytics
- Data
- Package
- Global Secure Access
- Analytic Rules
- Data
- Package
- Google Cloud Platform Audit Logs
- Data Connectors/GCPAuditLogs_ccp
- Data
- Package
- ISC Bind
- Data
- Package
- Infoblox Cloud Data Connector
- Analytic Rules
- Data
- Package
- Playbooks
- Infoblox-Import-AISCOMM-Weekly
- Infoblox-Import-Emails-Weekly
- Infoblox-Import-Hashes-Weekly
- Infoblox-Import-Hosts-Daily-LookalikeDomains
- Infoblox-Import-Hosts-Daily-MalwareC2DGA
- Infoblox-Import-Hosts-Daily-Phishing
- Infoblox-Import-Hosts-Hourly
- Infoblox-Import-IPs-Hourly
- Infoblox-Import-URLs-Hourly
- IoTOTThreatMonitoringwithDefenderforIoT
- Analytic Rules
- Data
- Package
- Ivanti Unified Endpoint Management
- Data
- Package
- JBoss
- Data
- Package
- JuniperIDP
- Data
- Package
- MarkLogicAudit
- Data
- Package
- McAfee Network Security Platform
- Data
- Package
- Microsoft Defender XDR
- Analytic Rules
- Package
- Nasuni
- Analytic Rules
- Data
- Hunting Queries
- Package
- Okta Single Sign-On
- Analytic Rules
- Package
- data
- Oracle Cloud Infrastructure/Data Connectors
- AzureFunctionOCILogs
- PaloAlto-PAN-OS
- Analytic Rules
- Package
- data
- PaloAltoPrismaCloud/Data Connectors
- Proofpoint On demand(POD) Email Security/Data Connectors
- ProofpointSentinelConnector
- Pulse Connect Secure
- Analytic Rules
- Data
- Package
- QualysVM
- Analytic Rules
- Package
- data
- RSA SecurID
- Data
- Package
- Recorded Future
- Analytic Rules
- Data
- Package
- Salesforce Service Cloud/Data Connectors
- SalesforceSentinelConnector
- Samsung Knox Asset Intelligence
- Analytic Rules
- CustomTables
- Data Connectors
- Data
- Package
- Workbooks
- SecurityBridge App
- Analytical Rules
- Data
- Package
- SentinelOne
- Data
- Package
- Symantec Endpoint Protection
- Analytic Rules
- Data
- Package
- Symantec VIP
- Analytic Rules
- Data
- Package
- SymantecProxySG/Analytic Rules
- Threat Intelligence/Analytic Rules
- Trend Micro Deep Security
- Data
- Package
- Trend Micro TippingPoint
- Data
- Package
- VMware Carbon Black Cloud/Analytic Rules
- Workday
- Data Connectors/Workday_ccp
- Package
- ZeroFox
- Data Connectors
- Alerts
- CTI
- Data
- Package
- iboss
- Data
- Package
- Tools
- Create-Azure-Sentinel-Solution
- V2/WorkbookMetadata
- common
- Sentinel-All-In-One/v2/LinkedTemplates
- Workbooks
- Images
- Logos
- Preview
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
623 files changed
+31639
-16590
lines changedLines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
8 | 8 | | |
9 | 9 | | |
10 | 10 | | |
11 | | - | |
| 11 | + | |
12 | 12 | | |
13 | 13 | | |
14 | 14 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
9 | 9 | | |
10 | 10 | | |
11 | 11 | | |
12 | | - | |
| 12 | + | |
13 | 13 | | |
14 | 14 | | |
15 | 15 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
111 | 111 | | |
112 | 112 | | |
113 | 113 | | |
114 | | - | |
| 114 | + | |
115 | 115 | | |
116 | 116 | | |
117 | 117 | | |
| |||
0 commit comments