-
Notifications
You must be signed in to change notification settings - Fork 4.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Filebeat] Update Threatinteal Anomali pipeline #27141
Conversation
8e75794
to
18918e6
Compare
💚 Build Succeeded
Expand to view the summary
Build stats
Test stats 🧪
Trends 🧪💚 Flaky test reportTests succeeded. Expand to view the summary
Test stats 🧪
|
Pinging @elastic/security-external-integrations (Team:Security-External Integrations) |
This pull request is now in conflicts. Could you fix it? 🙏
|
18918e6
to
141ac7b
Compare
/test |
(cherry picked from commit 7fa146c) Co-authored-by: Alex Resnick <[email protected]> Co-authored-by: Marius Iversen <[email protected]>
(cherry picked from commit 7fa146c) Co-authored-by: Alex Resnick <[email protected]>
What does this PR do?
Populates the
tags
field the same way the MISP dataset is populated and populates thethreatintel.indicator.provider
field like the Abuse URL dataset.Why is it important?
Standardizes the Threat Intel datasets
Checklist
CHANGELOG.next.asciidoc
orCHANGELOG-developer.next.asciidoc
.Author's Checklist
How to test this PR locally
Related issues
Use cases
Screenshots
Logs