Skip to content

Commit 97ba77f

Browse files
authored
Merge branch 'develop' into remote_emp_fraud
2 parents 25617e6 + 7de8363 commit 97ba77f

File tree

3 files changed

+24
-24
lines changed

3 files changed

+24
-24
lines changed

contentctl.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -83,9 +83,9 @@ apps:
8383
- uid: 5579
8484
title: Splunk Add-on for CrowdStrike FDR
8585
appid: Splunk_TA_CrowdStrike_FDR
86-
version: 2.0.3
86+
version: 2.0.5
8787
description: description of app
88-
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-crowdstrike-fdr_203.tgz
88+
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-crowdstrike-fdr_205.tgz
8989
- uid: 3185
9090
title: Splunk Add-on for Microsoft IIS
9191
appid: SPLUNK_TA_FOR_IIS

data_sources/crowdstrike_processrollup2.yml

Lines changed: 21 additions & 21 deletions
Original file line numberDiff line numberDiff line change
@@ -19,7 +19,7 @@ separator_value: ProcessRollup2
1919
supported_TA:
2020
- name: Splunk Add-on for CrowdStrike FDR
2121
url: https://splunkbase.splunk.com/app/5579
22-
version: 2.0.4
22+
version: 2.0.5
2323
fields:
2424
- AuthenticationId
2525
- AuthenticationId_meaning
@@ -100,26 +100,26 @@ fields:
100100
- user_id
101101
- vendor_product
102102
output_fields:
103-
- action
104-
- dest
105-
- original_file_name
106-
- parent_process
107-
- parent_process_exec
108-
- parent_process_guid
109-
- parent_process_id
110-
- parent_process_name
111-
- parent_process_path
112-
- process
113-
- process_exec
114-
- process_guid
115-
- process_hash
116-
- process_id
117-
- process_integrity_level
118-
- process_name
119-
- process_path
120-
- user
121-
- user_id
122-
- vendor_product
103+
- action
104+
- dest
105+
- original_file_name
106+
- parent_process
107+
- parent_process_exec
108+
- parent_process_guid
109+
- parent_process_id
110+
- parent_process_name
111+
- parent_process_path
112+
- process
113+
- process_exec
114+
- process_guid
115+
- process_hash
116+
- process_id
117+
- process_integrity_level
118+
- process_name
119+
- process_path
120+
- user
121+
- user_id
122+
- vendor_product
123123
field_mappings:
124124
- data_model: cim
125125
data_set: Endpoint.Processes

requirements.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1 +1 @@
1-
contentctl==5.5.3
1+
contentctl==5.5.5

0 commit comments

Comments
 (0)