Skip to content

Commit

Permalink
Branch was auto-updated.
Browse files Browse the repository at this point in the history
  • Loading branch information
srv-rr-gh-researchbt committed May 10, 2024
2 parents 9398420 + cb699b9 commit 57f497e
Show file tree
Hide file tree
Showing 59 changed files with 7,068 additions and 7,073 deletions.
22 changes: 10 additions & 12 deletions .github/workflows/validate-and-build.yml
Expand Up @@ -16,7 +16,7 @@ jobs:

- uses: actions/setup-python@v4
with:
python-version: '3.9' #Available versions here - https://github.com/actions/python-versions/releases easy to change/make a matrix/use pypy
python-version: '3.11' #Available versions here - https://github.com/actions/python-versions/releases easy to change/make a matrix/use pypy
architecture: 'x64' # optional x64 or x86. Defaults to x64 if not specified

- name: Install System Packages
Expand All @@ -25,24 +25,22 @@ jobs:
sudo apt install jq -qq

- name: Install Python Dependencies and ContentCTL
- name: Install Python Dependencies and ContentCTL and Atomic Red Team
run: |
pip3 install poetry
git submodule update --init contentctl
cd contentctl
git checkout main
poetry install
python3.11 -m venv .venv
source .venv/bin/activate
pip install contentctl
git clone --depth=1 --single-branch --branch=master https://github.com/redcanaryco/atomic-red-team.git
- name: content_ctl validate
run: |
cd contentctl
poetry run contentctl -p ../ validate
source .venv/bin/activate
contentctl validate
- name: contentctl generate
run: |
cd contentctl
poetry run contentctl -p ../ build
cd ..
source .venv/bin/activate
contentctl build --enrichments
mkdir artifacts
mv dist/DA-ESS-ContentUpdate-latest.tar.gz artifacts/
Expand Down
5 changes: 1 addition & 4 deletions contentctl.yml
Expand Up @@ -6,9 +6,7 @@ app:
version: 4.31.0
description: Explore the Analytic Stories included with ES Content Updates.
prefix: ESCU
build: 004210
version: 4.31.0
label: ES Content Updates
label: ESCU
author_name: Splunk Threat Research Team
author_email: research@splunk.com
author_company: Splunk
Expand Down Expand Up @@ -185,4 +183,3 @@ apps:
description: description of app
hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/Latest/url-toolbox_192.tgz
githash: d6fac80e6d50ae06b40f91519a98489d4ce3a3fd

2 changes: 1 addition & 1 deletion dist/DA-ESS-ContentUpdate/app.manifest
Expand Up @@ -14,7 +14,7 @@
"company": "Splunk"
}
],
"releaseDate": "2024-05-08",
"releaseDate": "2024-05-10",
"description": "Explore the Analytic Stories included with ES Content Updates.",
"classification": {
"intendedAudience": null,
Expand Down
3,820 changes: 1,910 additions & 1,910 deletions dist/DA-ESS-ContentUpdate/default/analyticstories.conf

Large diffs are not rendered by default.

4 changes: 2 additions & 2 deletions dist/DA-ESS-ContentUpdate/default/app.conf
@@ -1,7 +1,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:53 UTC
# On Date: 2024-05-10T18:00:36 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand All @@ -11,7 +11,7 @@
is_configured = false
state = enabled
state_change_requires_restart = false
build = 20240508171020
build = 20240510180009

[triggers]
reload.analytic_stories = simple
Expand Down
2 changes: 1 addition & 1 deletion dist/DA-ESS-ContentUpdate/default/collections.conf
@@ -1,7 +1,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:53 UTC
# On Date: 2024-05-10T18:00:36 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
2 changes: 1 addition & 1 deletion dist/DA-ESS-ContentUpdate/default/content-version.conf
@@ -1,7 +1,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:53 UTC
# On Date: 2024-05-10T18:00:36 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down
Expand Up @@ -2,7 +2,7 @@
#############
# Automatically generated by 'contentctl build' from
# https://github.com/splunk/contentctl
# On Date: 2024-05-08T17:10:54 UTC
# On Date: 2024-05-10T18:00:37 UTC
# Author: Splunk Threat Research Team - Splunk
# Contact: research@splunk.com
#############
Expand Down

0 comments on commit 57f497e

Please sign in to comment.