splunk / security_content

Splunk Security Content
https://research.splunk.com
Apache License 2.0
1.3k stars 362 forks source link

Update erroneous cloud security_domain #3172

Closed pyth0n1c closed 3 weeks ago

pyth0n1c commented 3 weeks ago

security_domain: cloud appeared in a number of detections, but this is not a valid value for the security_domain enumeration in Enterprise Security. This has been fixed in the following contentctl PR: https://github.com/splunk/contentctl/pull/314

Once that PR has been merged, this PR should be evaluated and merged as well.

patel-bhavin commented 3 weeks ago

no presence of security_domain: cloud , the contentctl PR looks good too!