Skip to content

Commit af54014

Browse files
committed
Updates
1 parent 202111a commit af54014

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

docs/cse/match-lists-suppressed-lists/standard-match-lists.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -546,9 +546,9 @@ The following Cloud SIEM rules refer to this match list:
546546

547547
### known_docker_images
548548

549-
**Target column:** Source IP Address (`SrcIp`)
549+
**Target column:** Username (`Username`)
550550

551-
**Description:** Hosts that are known to be involved with specific administrative or privileged activity in Docker.
551+
**Description:** Unrecognized Docker container images that may indicate an attempt to bypass security controls on existing images or escalate privileges.
552552

553553
The following Cloud SIEM rules refer to this match list:
554554
* Unrecognized Container Image

0 commit comments

Comments
 (0)