Naarcha-AWS
|
bac67fb431
|
Add threat intelligence for 2.12 (#6273)
* Add threat intelligence for 2.12
Signed-off-by: Naarcha-AWS <naarcha@amazon.com>
* Fix broken link
Signed-off-by: Naarcha-AWS <naarcha@amazon.com>
* Apply suggestions from code review
Signed-off-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
* Apply suggestions from code review
Co-authored-by: Melissa Vagi <vagimeli@amazon.com>
Signed-off-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
* Apply suggestions from code review
Signed-off-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
* Apply suggestions from code review
Co-authored-by: Nathan Bower <nbower@amazon.com>
Co-authored-by: Melissa Vagi <vagimeli@amazon.com>
Signed-off-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
* Update _security-analytics/usage/detectors.md
Signed-off-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
---------
Signed-off-by: Naarcha-AWS <naarcha@amazon.com>
Signed-off-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
Co-authored-by: Melissa Vagi <vagimeli@amazon.com>
Co-authored-by: Nathan Bower <nbower@amazon.com>
|
2024-02-08 14:19:47 -06:00 |
Heather Halter
|
346c52dd2f
|
Add updates to creating a detector UX (#5176)
* detector draft
Signed-off-by: Heather Halter <hdhalter@amazon.com>
* updated screen shots and fixed links
Signed-off-by: Heather Halter <hdhalter@amazon.com>
* fix links
Signed-off-by: Heather Halter <hdhalter@amazon.com>
* remove strange character
Signed-off-by: Heather Halter <hdhalter@amazon.com>
* Update _security-analytics/index.md
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
Signed-off-by: Heather Halter <HDHALTER@AMAZON.COM>
* Update _security-analytics/usage/findings.md
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
Signed-off-by: Heather Halter <HDHALTER@AMAZON.COM>
* Update _security-analytics/sec-analytics-config/detectors-config.md
Co-authored-by: Nathan Bower <nbower@amazon.com>
Signed-off-by: Heather Halter <HDHALTER@AMAZON.COM>
* Update _security-analytics/sec-analytics-config/detectors-config.md
Co-authored-by: Nathan Bower <nbower@amazon.com>
Signed-off-by: Heather Halter <HDHALTER@AMAZON.COM>
* Update _security-analytics/usage/findings.md
Co-authored-by: Nathan Bower <nbower@amazon.com>
Signed-off-by: Heather Halter <HDHALTER@AMAZON.COM>
* fixed substep formatting problem
Signed-off-by: Heather Halter <hdhalter@amazon.com>
* Update _security-analytics/sec-analytics-config/detectors-config.md
Co-authored-by: Nathan Bower <nbower@amazon.com>
Signed-off-by: Heather Halter <HDHALTER@AMAZON.COM>
---------
Signed-off-by: Heather Halter <hdhalter@amazon.com>
Signed-off-by: Heather Halter <HDHALTER@AMAZON.COM>
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
Co-authored-by: Nathan Bower <nbower@amazon.com>
|
2023-10-13 07:49:08 -07:00 |
Chris Moore
|
dde7c02b8d
|
Add documentation that supports custom log types (#4969)
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4741 custom logtype updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-09-19 14:36:56 -07:00 |
Chris Moore
|
b9b21e1e30
|
Add documentation to provide a link from detector creation to detection rule creation in using rules docs (#4829)
* fix#4828 link to detection rule creation
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4828 link to detection rule creation
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4828 link to detection rule creation
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4828 link to detection rule creation
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-08-17 17:22:04 -07:00 |
Chris Moore
|
169f71427c
|
Fix correlation engine documentation by removing all instances of the experimental flag for 2.9 (#4635)
* fix#4631 correlation rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4631 correlation rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4631 correlation rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4631 correlation rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4631 correlation rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-07-25 14:03:50 -07:00 |
Chris Moore
|
22fd96e80b
|
Add documentation for detector rule creation updates (#4499)
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4413 detection rule updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-07-19 17:44:07 -07:00 |
Chris Moore
|
4f0fb7e9c6
|
Add documentation for Security Analytics UI updates for 2.8 (#4208)
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#4134 SecAnalytics UI updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-06-02 13:19:55 -07:00 |
Chris Moore
|
cffae76ac2
|
Add correlation engine to Security Analytics documentation (#3814)
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3566 correlation engine
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-05-02 10:36:27 -07:00 |
Chris Moore
|
7bc7f0e5e9
|
Add formatting fixes for Security Analytics (#3128)
* fix#3126-sec-analytics-formatting
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3126-sec-analytics-formatting
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-02-28 16:16:45 -08:00 |
Chris Moore
|
b49f5fcd76
|
Add documentation for log type updates in Security Analytics - pt. 2 (#3083)
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#3018-sec-analytics-2.6-II
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-02-28 10:13:59 -08:00 |
Chris Moore
|
8b8d9685d7
|
Security Analytics—additional updates following 2.5 release (#2515)
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
* Update _security-analytics/sec-analytics-config/detectors-config.md
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
* Update _security-analytics/sec-analytics-config/detectors-config.md
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-updates-revisit
Signed-off-by: cwillum <cwmmoore@amazon.com>
---------
Signed-off-by: cwillum <cwmmoore@amazon.com>
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
|
2023-01-31 17:58:14 -08:00 |
Chris Moore
|
f89e111983
|
Updates to Security Analytics documentation (#2408)
* fix#2400-revisions-to-current
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-SecAnalytics-updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-SecAnalytics-updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-SecAnalytics-updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-SecAnalytics-updates
Signed-off-by: cwillum <cwmmoore@amazon.com>
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-01-18 09:46:44 -08:00 |
Chris Moore
|
e641a3bb0c
|
Add new Rules documentation that covers YAML Editor view (#2407)
* fix#2400-yaml-editor-rules
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-yaml-editor-rules
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#2400-yaml-editor-rules
Signed-off-by: cwillum <cwmmoore@amazon.com>
Signed-off-by: cwillum <cwmmoore@amazon.com>
|
2023-01-13 17:24:40 -08:00 |
Chris Moore
|
605edd5ac3
|
Add documentation for Security Analytics plugin (#1824)
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* Delete admin-api.md
* Delete api-index.md
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics (#1901)
Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>
Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
* fix#939-sec-analytics
Signed-off-by: cwillum <cwmmoore@amazon.com>
Signed-off-by: cwillum <cwmmoore@amazon.com>
Signed-off-by: Subhobrata Dey <sbcd90@gmail.com>
Co-authored-by: Subhobrata Dey <sbcd90@gmail.com>
Co-authored-by: Naarcha-AWS <97990722+Naarcha-AWS@users.noreply.github.com>
|
2022-11-18 10:19:06 -08:00 |