Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add example lookup table and data file #446

Merged
merged 5 commits into from
Jul 29, 2022
Merged

Conversation

dashaaa
Copy link

@dashaaa dashaaa commented Jul 6, 2022

Background

Lookup tables and their content can be uploaded using panther_analysis_tool, we need examples to be public.

Changes

Added example lookup table and it's content

Testing

panther_analysis_tool test-lookup-table --path example_cidr_lookup_table.yml

@dashaaa dashaaa requested a review from rleighton July 26, 2022 22:31
@dashaaa dashaaa marked this pull request as ready for review July 27, 2022 16:19
@dashaaa dashaaa requested a review from a team July 27, 2022 16:19
@rleighton
Copy link
Contributor

When we update the docs, let's use this as the example.

@imju-panther
Copy link

@lindsey-w can you approve this? Thx!

1.0.2.0/23,1814991
1.0.4.0/22,2077456
1.0.8.0/21,1814991
1.0.16.0/20,1814991
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nit: newline

Copy link
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Done!

Copy link
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Sorry, don't know how to submit after commit without re-review

k-bailey
k-bailey previously approved these changes Jul 28, 2022
@dashaaa dashaaa requested review from a team and k-bailey July 28, 2022 18:52
@dashaaa dashaaa enabled auto-merge (squash) July 29, 2022 18:20
@dashaaa dashaaa merged commit c6e6863 into master Jul 29, 2022
@dashaaa dashaaa deleted the daria-example-lookup branch July 29, 2022 18:21
kbroughton added a commit to kbroughton/panther-analysis that referenced this pull request Aug 19, 2022
…n/panther-analysis into k8s-unauthorized-exec-into-pod

* 'k8s-unauthorized-exec-into-pod' of github.com:kbroughton/panther-analysis: (21 commits)
  fix: greynoise object function call not attribute (panther-labs#479)
  Packs: Cloudflare & Slack (panther-labs#478)
  feat: bring additional alert_context to AWS rules which had none (panther-labs#472)
  feat: cyclomatic complexity linting (panther-labs#474)
  Tweak - Cloudflare L7 DDoS (panther-labs#475)
  chore: update test badge to use github actions (panther-labs#471)
  Combine GSuite High/Medium/Low Rule alerts into one (panther-labs#467)
  kbailey: remove circleCI (panther-labs#470)
  Kbroughton/make lint action (panther-labs#452)
  fix: panther specific github actions should not run on forks (panther-labs#469)
  Remove managed schemas (panther-labs#421)
  Slack Detections - User (panther-labs#464)
  Slack Detections - EKM (panther-labs#463)
  Slack Detections - App (panther-labs#462)
  Initial Commit - Slack Detections - File (panther-labs#465)
  Slack Detections - Channel (panther-labs#461)
  Slack Detections - Workspace/Org (panther-labs#460)
  Update GSuite Alerts Rules with Rule Name (panther-labs#440)
  Add example lookup table and data file (panther-labs#446)
  Slack Data Models & Alert Context Helper (panther-labs#458)
  ...
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants