Josh Brower
|
238e671f34
|
Merge pull request #8129 from Security-Onion-Solutions/fix/curator-cron
Change curator to daily for true cluster
|
2022-06-15 11:40:53 -04:00 |
|
Josh Brower
|
072cb3cca2
|
Change curator to daily for true cluster
|
2022-06-15 11:38:38 -04:00 |
|
weslambert
|
44595cb333
|
Merge pull request #8123 from Security-Onion-Solutions/foxtrot
Merge foxtrot into dev
|
2022-06-14 15:44:13 -04:00 |
|
weslambert
|
959cec1845
|
Delete Elastalert indices before upgrading to Elastic 8
|
2022-06-14 11:40:11 -04:00 |
|
doug
|
025993407e
|
FIX: Add event.category field to pfsense firewall logs #8112
|
2022-06-13 08:03:44 -04:00 |
|
weslambert
|
151a42734c
|
Update Elastic version to 8.2.2
|
2022-06-08 15:07:45 -04:00 |
|
weslambert
|
11e3576e0d
|
Update Elastic version to 8.2.2
|
2022-06-08 15:07:07 -04:00 |
|
weslambert
|
adeccd0e7f
|
Merge pull request #8097 from Security-Onion-Solutions/dev
Merge latest dev into foxtrot
|
2022-06-08 15:01:09 -04:00 |
|
weslambert
|
aadf391e5a
|
Temporarily downgrade version for merge
|
2022-06-08 14:59:01 -04:00 |
|
weslambert
|
47f74fa5c6
|
Temporarily downgrade version for merge
|
2022-06-08 14:58:05 -04:00 |
|
Josh Brower
|
c9d9804c3a
|
Allow websockets for fleetdm
|
2022-06-06 17:26:24 -04:00 |
|
Doug Burks
|
dce415297c
|
improve readability in motd.md
|
2022-06-04 06:59:09 -04:00 |
|
Doug Burks
|
de126647f8
|
Update motd.md to include links to Dashboards and Cases
|
2022-06-04 06:55:08 -04:00 |
|
Doug Burks
|
83bff5ee87
|
add bar and pie examples to overview dashboard in dashboards.queries.json
|
2022-06-03 15:02:40 -04:00 |
|
Doug Burks
|
4a886338c8
|
fix description field for default dashboard in dashboards.queries.json
|
2022-06-03 11:10:01 -04:00 |
|
Doug Burks
|
7da1802eae
|
Add sankey diagram to default dashboard in dashboards.queries.json
|
2022-06-03 11:03:48 -04:00 |
|
Mike Reeves
|
395eaa39b4
|
Update soup
|
2022-06-02 11:45:37 -04:00 |
|
Mike Reeves
|
fce43cf390
|
soup for 130
|
2022-06-02 10:33:18 -04:00 |
|
Josh Patterson
|
e5c9b91529
|
Merge pull request #8054 from Security-Onion-Solutions/dmz_receiver
Dmz receiver
|
2022-06-01 15:31:42 -04:00 |
|
m0duspwnens
|
e5b74bcb78
|
remove podman state
|
2022-06-01 15:26:25 -04:00 |
|
Doug Burks
|
269b16bbfd
|
https://github.com/Security-Onion-Solutions/securityonion/issues/8049
|
2022-05-31 16:51:05 -04:00 |
|
Doug Burks
|
cd382a1b25
|
FIX: Elastalert query in Hunt #8049
|
2022-05-31 16:50:32 -04:00 |
|
Doug Burks
|
e1c9b0d108
|
FIX: Elastalert query in Hunt #8049
|
2022-05-31 16:47:52 -04:00 |
|
Doug Burks
|
9a98667e85
|
FIX: Elastalert query in Hunt #8049
|
2022-05-31 16:47:11 -04:00 |
|
Wes Lambert
|
7f30a364ee
|
Make sure everything is added back after renaming mhr to malwarehashregistry
|
2022-05-31 11:44:35 +00:00 |
|
Wes Lambert
|
c82aa89497
|
Fix Malware Hash Registry naming so it's more descriptive in SOC
|
2022-05-31 11:41:48 +00:00 |
|
Josh Brower
|
a5361fb745
|
Change Target_log name
|
2022-05-28 18:07:05 -04:00 |
|
Josh Brower
|
94ee45ac63
|
Merge pull request #8029 from Security-Onion-Solutions/upgrade/navigator
Upgrade Navigator to 4.6.4
|
2022-05-27 14:46:59 -04:00 |
|
Josh Brower
|
43cb78a6a8
|
Upgrade Navigator
|
2022-05-27 14:21:11 -04:00 |
|
m0duspwnens
|
53d6e1d30d
|
simplfy
|
2022-05-26 11:51:17 -04:00 |
|
m0duspwnens
|
1bfde852f5
|
manage suricata classifications.config https://github.com/Security-Onion-Solutions/securityonion/issues/7918
|
2022-05-26 11:43:31 -04:00 |
|
m0duspwnens
|
53883e4ade
|
manage suricata classifications.config https://github.com/Security-Onion-Solutions/securityonion/issues/7918
|
2022-05-26 11:40:33 -04:00 |
|
weslambert
|
44622350ea
|
Add ID for RITA filestream inputs
|
2022-05-25 10:09:01 -04:00 |
|
weslambert
|
99864f4787
|
Merge pull request #8001 from Security-Onion-Solutions/feature/analyzer_readme
Add configuration requirements for various analyzers
|
2022-05-25 09:33:07 -04:00 |
|
Doug Burks
|
1d0bb21908
|
UPGRADE: Elastic 7.17.4 #8002
|
2022-05-24 13:19:30 -04:00 |
|
Doug Burks
|
bde06e7ec5
|
UPGRADE: Elastic 7.17.4 #8002
|
2022-05-24 13:19:01 -04:00 |
|
Wes Lambert
|
b93512eb01
|
Adjust verbiage around pillar configuration
|
2022-05-24 12:36:32 +00:00 |
|
Wes Lambert
|
92dee14ee8
|
Add configuration requirements for various analyzers
|
2022-05-24 12:29:14 +00:00 |
|
weslambert
|
a6f1bf3aef
|
Create Virustotal README
|
2022-05-23 11:39:44 -04:00 |
|
Jason Ertel
|
88f17f037e
|
Merge pull request #7982 from Security-Onion-Solutions/kilo
Upgrade to Kratos 0.9.0-alpha.3
|
2022-05-19 13:28:58 -04:00 |
|
Jason Ertel
|
c20859f8c3
|
Upgrade to Kratos 0.9.0-alpha.3
|
2022-05-18 17:05:21 -04:00 |
|
Wes Lambert
|
429ccb2dcc
|
Only import yaml module when config is loaded
|
2022-05-18 02:07:39 +00:00 |
|
weslambert
|
d3206a048f
|
Add information for MHR and WhoisLookup, and other minor updates
|
2022-05-17 12:49:16 -04:00 |
|
weslambert
|
ff855eb8f7
|
Merge pull request #7958 from Security-Onion-Solutions/feature/mhr_analyzer
Add Team Cymru Malware Hash Registry Analyzer
|
2022-05-17 12:42:01 -04:00 |
|
Wes Lambert
|
8af1f19ac3
|
Another no_results change
|
2022-05-17 16:12:43 +00:00 |
|
Wes Lambert
|
e4a7e3cba6
|
Change 'No results found.' to 'no_results'
|
2022-05-17 16:11:58 +00:00 |
|
Wes Lambert
|
766e9748c5
|
Add Whoislookup RDAP-based analyzer
|
2022-05-17 15:52:12 +00:00 |
|
weslambert
|
3761b491c0
|
Remove whitespace
|
2022-05-17 10:50:33 -04:00 |
|
Wes Lambert
|
e8fc3ccdf4
|
Add Team Cymru Malware Hash Registry Analyzer
|
2022-05-17 14:44:53 +00:00 |
|
doug
|
5cbb50a781
|
update dashboards.queries.json and hunt.queries.json
|
2022-05-16 08:33:48 -04:00 |
|