Skip to content

Commit 9b0a748

Browse files
authored
updates to manual
1 parent 9a6c0a7 commit 9b0a748

File tree

2 files changed

+2
-0
lines changed

2 files changed

+2
-0
lines changed

detections/endpoint/windows_sql_server_critical_procedures_enabled.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -71,6 +71,7 @@ tags:
7171
- Splunk Enterprise Security
7272
- Splunk Cloud
7373
security_domain: endpoint
74+
manual_test: The risk message is dynamically generated in the SPL and it needs to be manually tested for integration testing.
7475
tests:
7576
- name: True Positive Test
7677
attack_data:

detections/endpoint/windows_sql_server_xp_cmdshell_config_change.yml

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -73,6 +73,7 @@ tags:
7373
- Splunk Enterprise Security
7474
- Splunk Cloud
7575
security_domain: endpoint
76+
manual_test: The risk message is dynamically generated in the SPL and it needs to be manually tested for integration testing.
7677
tests:
7778
- name: True Positive Test
7879
attack_data:

0 commit comments

Comments
 (0)