From f6b8bdc89cad8a5a4435cd5d031d214a08616ac0 Mon Sep 17 00:00:00 2001 From: patel-bhavin <7771446+patel-bhavin@users.noreply.github.com> Date: Fri, 14 Feb 2025 06:57:48 +0000 Subject: [PATCH] Updated TAs --- contentctl.yml | 4 ++-- data_sources/crowdstrike_processrollup2.yml | 2 +- data_sources/linux_secure.yml | 2 +- 3 files changed, 4 insertions(+), 4 deletions(-) diff --git a/contentctl.yml b/contentctl.yml index c1a4789702..aae96a4dc4 100644 --- a/contentctl.yml +++ b/contentctl.yml @@ -77,9 +77,9 @@ apps: - uid: 5579 title: Splunk Add-on for CrowdStrike FDR appid: Splunk_TA_CrowdStrike_FDR - version: 2.0.3 + version: 2.0.4 description: description of app - hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-crowdstrike-fdr_203.tgz + hardcoded_path: https://attack-range-appbinaries.s3.us-west-2.amazonaws.com/splunk-add-on-for-crowdstrike-fdr_204.tgz - uid: 3185 title: Splunk Add-on for Microsoft IIS appid: SPLUNK_TA_FOR_IIS diff --git a/data_sources/crowdstrike_processrollup2.yml b/data_sources/crowdstrike_processrollup2.yml index 83b05821b9..e72668d8cc 100644 --- a/data_sources/crowdstrike_processrollup2.yml +++ b/data_sources/crowdstrike_processrollup2.yml @@ -10,7 +10,7 @@ separator: event_simpleName supported_TA: - name: Splunk Add-on for CrowdStrike FDR url: https://splunkbase.splunk.com/app/5579 - version: 2.0.3 + version: 2.0.4 fields: - AuthenticationId - AuthenticationId_meaning diff --git a/data_sources/linux_secure.yml b/data_sources/linux_secure.yml index 468d387446..c3bb4697bb 100644 --- a/data_sources/linux_secure.yml +++ b/data_sources/linux_secure.yml @@ -9,7 +9,7 @@ sourcetype: linux_secure supported_TA: - name: Splunk Add-on for Unix and Linux url: https://splunkbase.splunk.com/app/833 - version: 9.2.0 + version: 10.0.0 fields: - _time - action