Commit Graph

487 Commits

Author SHA1 Message Date
thomashaw
7210e4b70d MessageActioner: fix for system goal numbering 2022-10-19 18:36:06 +01:00
thomashaw
df0c7c5f33 EA access_acc rule update (covers su account & exploit acc access via distccd) 2022-10-19 16:47:06 +01:00
thomashaw
2d90f22f43 correct naming for system goals 2022-10-17 19:08:34 +01:00
thomashaw
dac747026e Elastalert goal rules fix (?? testing...) 2022-10-17 18:06:31 +01:00
thomashaw
9969bde729 add 2cpu to grading server 2022-10-17 18:02:54 +01:00
thomashaw
1863986128 wip 2022-10-16 18:44:24 +01:00
thomashaw
e1dbfb358e fix rule generation bug for system level goals 2022-10-16 17:37:37 +01:00
thomashaw
66c83feee9 Updating EA rule to correctly works with OR clause for different process.executable's (wip2) 2022-10-15 21:13:01 +01:00
thomashaw
27ac703e61 Updating EA rule to correctly works with OR clause for different process.executable's (wip) 2022-10-15 18:01:55 +01:00
thomashaw
d6431ae991 Updating EA rule to correctly works with OR clause for different process.executable's 2022-10-15 16:34:28 +01:00
thomashaw
51c678925d granluar mappings implementing system goal mapping (to test remotely!) 2022-09-07 00:32:48 +01:00
thomashaw
f8e16cf9ec granluar mappings (to test!) 2022-09-06 23:30:59 +01:00
thomashaw
ba22de39cf Goal message granular mappings (WiP) 2022-09-06 22:27:35 +01:00
thomashaw
98f8e15968 granluar mappings wip 2022-09-06 21:17:18 +01:00
thomashaw
9eeffbbd7f web_actioner.rb: Removing testing code. Commented out the request until merge. 2022-08-29 20:46:41 +01:00
thomashaw
f975f802ef Updating testing stubs to new VM set 2022-08-29 17:59:27 +01:00
thomashaw
f5ede38a4d Testing Static Flags -> Hacktivity (2) 2022-08-25 16:59:12 +01:00
thomashaw
c6c9bd5b00 Testing Static Flags -> Hacktivity 2022-08-25 16:58:50 +01:00
thomashaw
c5f29cc821 fixed duplicate &amp in output 2022-08-17 14:41:05 +01:00
thomashaw
dfc73ba2ca web_test -- test if it works w/ proxy or not 2022-07-10 17:27:04 +01:00
thomashaw
f7e7747dee simplified rule for testing / benchmarking 2022-07-10 16:59:58 +01:00
thomashaw
614ddcce67 wip 2022-07-07 23:06:36 +01:00
thomashaw
dc1e2cba25 wip 2022-07-07 23:03:06 +01:00
thomashaw
ca1701a86e wip 2022-07-07 22:38:42 +01:00
thomashaw
7212a5980f wip 2022-07-07 22:13:17 +01:00
thomashaw
4307d4a117 wip 2022-07-07 21:59:55 +01:00
thomashaw
0cf678ffb5 print 2022-07-07 21:43:23 +01:00
thomashaw
3339432d9b Fixing scenario + adding an error message for if a file within '/' is monitored as a goal. 2022-04-21 15:15:57 +01:00
thomashaw
e0929bf4cc updated EA rule generation to add switch 2022-04-20 14:16:58 +01:00
thomashaw
fae33e2140 updating EA rule generation to include file name 2022-04-20 12:47:41 +01:00
thomashaw
d2b31ecfbf updated elastalert rule execalerter to include 'raise' keyword 2022-04-19 16:12:25 +01:00
thomashaw
c0eef11fab flag xml wrapped in challenge 2022-04-14 13:07:05 +01:00
thomashaw
59884a72f9 updating generated rule format and rule target paths 2022-02-24 17:23:11 +00:00
thomashaw
08507e2fe8 updated rule generation + left comment in for testing. (3/?) 2022-02-23 15:07:40 +00:00
thomashaw
475149da1a updated rule generation + left comment in for testing. (2/?) 2022-02-23 15:07:07 +00:00
thomashaw
2feb7611c2 updated rule generation + left comment in for testing. 2022-02-22 21:45:27 +00:00
thomashaw
a15fbf9847 updated rule. needs testing 2022-02-22 21:04:44 +00:00
thomashaw
17318c08b8 updated rule. needs testing 2022-02-22 21:04:20 +00:00
thomashaw
5d193d382d Adding the account access rule template... 2022-02-16 17:04:29 +00:00
thomashaw
60d3604efd Dynamic generation of goal flags (and some cleanup, removing goal_flags etc.). 2022-02-16 15:28:59 +00:00
thomashaw
9e197b051d goal flags xml generation wip 2022-02-03 23:39:02 +00:00
thomashaw
14c4268bd8 goal flags xml generation wip 2022-02-03 23:31:48 +00:00
thomashaw
277e1ba699 fixing print statements (wip) 2022-02-03 23:14:08 +00:00
thomashaw
87b305fb24 fixing print statements (wip) 2022-02-03 23:07:12 +00:00
thomashaw
8292595dcc fixing print statements (wip) 2022-02-03 22:57:01 +00:00
thomashaw
608ad83e72 fixing print statements (wip) 2022-02-03 22:43:02 +00:00
thomashaw
4ad07743c6 fixing print statements (wip) 2022-02-03 22:30:39 +00:00
thomashaw
34e59a1c27 adding print statements (wip) 2022-02-03 22:04:03 +00:00
thomashaw
59f119c767 adding print statements (wip) 2022-02-03 21:22:58 +00:00
thomashaw
411a724ee3 (wip) 2022-02-03 20:25:45 +00:00