olafhartong / ThreatHunting

A Splunk app mapped to MITRE ATT&CK to guide your threat hunts
MIT License
1.12k stars 177 forks source link

Updated match_types #67

Closed OutpostSecurity closed 3 years ago

OutpostSecurity commented 3 years ago

Updated match_type entries with space to match Splunk spec. Also added WILDCARD(event_type) to [registry_whitelist] which seemed to be breaking it from working properly.