Skip to content

Commit

Permalink
Updated TAs
Browse files Browse the repository at this point in the history
  • Loading branch information
patel-bhavin authored and github-actions[bot] committed Nov 28, 2024
1 parent 046fbbf commit 9d5a852
Show file tree
Hide file tree
Showing 55 changed files with 265 additions and 473 deletions.
17 changes: 5 additions & 12 deletions contentctl.yml
Original file line number Diff line number Diff line change
Expand Up @@ -29,12 +29,6 @@ mode: {}
splunk_api_username: null
post_test_behavior: pause_on_failure
apps:
# - uid: 263
# title: Splunk Enterprise Security
# appid: SplunkEnterpriseSecuritySuite
# version: 7.3.1
# description: description of app
# hardcoded_path: apps/splunk-enterprise-security_731.spl
- uid: 1621
title: Splunk Common Information Model (CIM)
appid: Splunk_SA_CIM
Expand Down Expand Up @@ -142,10 +136,10 @@ apps:
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-amazon-kinesis-firehose_132.tgz
- uid: 1876
title: Splunk Add-on for AWS
appid: Splunk_TA_aws
version: 7.7.1
appid: Splunk_TA_aws
version: 7.8.0
description: description of app
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-amazon-web-services-aws_771.tgz
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-amazon-web-services-aws_780.tgz
- uid: 3088
title: Splunk Add-on for Google Cloud Platform
appid: SPLUNK_ADD_ON_FOR_GOOGLE_CLOUD_PLATFORM
Expand Down Expand Up @@ -185,9 +179,9 @@ apps:
- uid: 6207
title: Splunk Add-on for Microsoft Security
appid: Splunk_TA_MS_Security
version: 2.3.0
version: 2.4.0
description: description of app
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-microsoft-security_230.tgz
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-microsoft-security_240.tgz
- uid: 2734
title: URL Toolbox
appid: URL_TOOLBOX
Expand All @@ -207,4 +201,3 @@ apps:
description: description of app
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/crowdstrike-falcon-event-streams-technical-add-on_321.tgz
githash: d6fac80e6d50ae06b40f91519a98489d4ce3a3fd

2 changes: 1 addition & 1 deletion data_sources/aws_cloudfront.yml
Original file line number Diff line number Diff line change
Expand Up @@ -9,7 +9,7 @@ sourcetype: aws:cloudfront:accesslogs
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,4 +10,4 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_assumerolewithsaml.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_consolelogin.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_copyobject.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- additionalEventData.AuthenticationMethod
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createaccesskey.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createkey.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createloginprofile.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createnetworkaclentry.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createpolicyversion.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createsnapshot.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createtask.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_createvirtualmfadevice.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deactivatemfadevice.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletealarms.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletedetector.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletegroup.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deleteipset.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deleteloggroup.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- apiVersion
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletelogstream.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- apiVersion
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletenetworkaclentry.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletepolicy.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deleterule.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- apiVersion
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletesnapshot.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletetrail.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletevirtualmfadevice.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_deletewebacl.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- apiVersion
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_describeeventaggregates.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_describeimagescanfindings.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_getaccountpasswordpolicy.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_getobject.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- additionalEventData.AuthenticationMethod
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_getpassworddata.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_jobcreated.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_modifydbinstance.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_modifyimageattribute.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_modifysnapshotattribute.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- app
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_putbucketacl.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- action
Expand Down
2 changes: 1 addition & 1 deletion data_sources/aws_cloudtrail_putbucketlifecycle.yml
Original file line number Diff line number Diff line change
Expand Up @@ -10,7 +10,7 @@ separator: eventName
supported_TA:
- name: Splunk Add-on for AWS
url: https://splunkbase.splunk.com/app/1876
version: 7.7.1
version: 7.8.0
fields:
- _time
- additionalEventData.AuthenticationMethod
Expand Down
Loading

0 comments on commit 9d5a852

Please sign in to comment.