-
Notifications
You must be signed in to change notification settings - Fork 359
Issues: splunk/security_content
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
[BUG] Missing wildcard for -type parameter detection 2452e632-9e0d-11eb-bacd-acde48001122
bug
Something isn't working
#3171
opened Oct 22, 2024 by
Wouter-Jansen
[BUG] Azure MFA failure detections logic flaw
bug
Something isn't working
#3134
opened Sep 19, 2024 by
0xC0FFEEEE
AppLocker Dashboard Issue - No Policy Review Data
bug
Something isn't working
#3021
opened Jun 22, 2024 by
matchstickboy
[BUG] Missing Wildcards in Splunk Rule for Detecting Known Services Killed by Ransomware
bug
Something isn't working
#2996
opened Apr 9, 2024 by
shimonShouei
[BUG] Linux Service Started Or Enabled triggering on Windows events
bug
Something isn't working
#2944
opened Jan 17, 2024 by
0xC0FFEEEE
[BUG] ESCU - Detect Excessive Account Lockouts From Endpoint
bug
Something isn't working
#2929
opened Dec 14, 2023 by
githubonlyy
[BUG] "Kerberos TGT Request Using RC4 Encryption" using non-CIM field "Account_Name"
bug
Something isn't working
#2920
opened Dec 1, 2023 by
iso-rgomez
[BUG] ESCU CS fields LogonType and TargetUserName
bug
Something isn't working
#2869
opened Oct 2, 2023 by
cp-sn
[BUG] artifact_update custom function fails if cef_value passed is 0
bug
Something isn't working
#2821
opened Aug 22, 2023 by
ianwills-splunk
Underscores in some Windows log based rules
bug
Something isn't working
#2312
opened Aug 2, 2022 by
alekwisnia
detect_new_local_admin_account.yml query update
bug
Something isn't working
#2073
opened Mar 8, 2022 by
TheLawsOfChaos
ProTip!
Follow long discussions with comments:>50.