issues
search
mozilla-services
/
foxsec-pipeline
Log analysis pipeline utilizing Apache Beam
Mozilla Public License 2.0
25
stars
9
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Add /check_[ip/email] slack command
#513
kkleemola
closed
3 years ago
0
Update amo messages
#512
kkleemola
closed
3 years ago
0
Add metrics to AMO heuristics to help detect missing log messages
#511
kkleemola
closed
3 years ago
1
Update AMO event to match new logging statement
#510
diox
closed
3 years ago
1
update to 0.15.1
#509
kkleemola
closed
3 years ago
0
Add tor exit node lookup for httprequest
#508
kkleemola
opened
3 years ago
0
Improve error handling to reduce pipeline stalls
#507
kkleemola
closed
2 years ago
1
test - do not merge
#506
kkleemola
closed
3 years ago
0
Enrich authprofile alerts
#505
kkleemola
closed
3 years ago
0
Enrich authprofile alerts
#504
kkleemola
closed
3 years ago
0
Improve alert batching for GuardDuty (within Gatekeeper)
#503
ajvb
closed
2 years ago
1
add parser payload metrics
#502
kkleemola
closed
3 years ago
1
Travis CI free usage ends Dec 3; mozilla repos should switch to other CI platforms
#501
hwine
closed
3 years ago
1
Next v 0.14.2
#500
kkleemola
closed
3 years ago
0
refactor deduplication for aws cross account correlator
#499
kkleemola
closed
3 years ago
0
always include supplementary slack notification for crit objects
#498
kkleemola
closed
3 years ago
0
Version v0.14.1
#497
kkleemola
closed
3 years ago
0
Aws AssumeRole Correlator fixes
#496
kkleemola
closed
3 years ago
0
update beam to 2.25
#495
kkleemola
closed
3 years ago
0
Next v 0.14.0
#494
kkleemola
closed
3 years ago
0
improve aws cross account access
#493
kkleemola
closed
4 years ago
0
support multi value key in watchlist
#492
kkleemola
closed
4 years ago
0
small fixes for account enumeration
#491
kkleemola
closed
4 years ago
0
Update Taskcluster's log model
#490
ajvb
closed
3 years ago
1
Next v
#489
kkleemola
closed
4 years ago
0
fix inconsistencies in account enumeration naming
#488
kkleemola
closed
4 years ago
0
next version
#487
kkleemola
closed
4 years ago
0
update junit to 4.13.1 + replace deprecated methods
#486
kkleemola
closed
4 years ago
0
Bump junit from 4.12 to 4.13.1
#485
dependabot[bot]
closed
4 years ago
2
update version to 0.12.10
#484
kkleemola
closed
4 years ago
0
Do not create alerts for reserved ip addresses
#483
kkleemola
opened
4 years ago
0
Customs account enumeration detection
#482
kkleemola
closed
4 years ago
0
fix npe in PrivateRelayForward
#481
ameihm0912
closed
4 years ago
0
bump to v0.12.9
#480
kkleemola
closed
4 years ago
0
add pubsub.NewClient to http.go InitConfig
#479
ajvb
closed
4 years ago
0
make cfgtick source conditional on cfgtick interval option
#478
kkleemola
closed
4 years ago
0
add gbk+ungroup to avoid fusion in hard limit analysis
#477
kkleemola
closed
4 years ago
0
add extra step to avoid needing sideinput for every hard limit check
#476
kkleemola
closed
4 years ago
0
Replace filter step w/ output tuple
#475
kkleemola
closed
4 years ago
0
Next ver
#474
kkleemola
closed
4 years ago
0
use immutableset instead of arraylist for activity monitor list
#473
kkleemola
closed
4 years ago
0
log both login failures and successes for monitored accounts
#472
kkleemola
closed
4 years ago
0
update duopull + slackbot-http to use sops
#471
kkleemola
closed
4 years ago
1
HTTPRequest in some situations can begin to lag over time
#470
ameihm0912
closed
3 years ago
1
update version and docs
#469
kkleemola
closed
4 years ago
0
add getsessiontoken to cloudtrail auth events
#468
kkleemola
closed
4 years ago
0
[authprofile] Alert on unknown users for specific systems
#467
kkleemola
opened
4 years ago
0
upgrade beam to 2.23
#466
kkleemola
closed
4 years ago
0
private relay analysis transform
#465
ameihm0912
closed
4 years ago
0
clear alert suppressor state in global window
#464
ameihm0912
closed
4 years ago
1
Previous
Next