Skip to content

Commit 2dba7fc

Browse files
committed
Updated ymls
1 parent e17ab01 commit 2dba7fc

30 files changed

+120
-14
lines changed

playbooks/AD_LDAP_Account_Locking.yml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -22,3 +22,7 @@ tags:
2222
playbook_fields: []
2323
product:
2424
- Splunk SOAR
25+
use_cases:
26+
- Phishing
27+
- Endpoint
28+
defend_technique_id: D3-AL

playbooks/AD_LDAP_Entity_Attribute_Lookup.yml

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,4 +20,6 @@ tags:
2020
vpe_type: Modern
2121
playbook_fields: []
2222
product:
23-
- Splunk SOAR
23+
- Splunk SOAR
24+
use_cases:
25+
- Enrichment

playbooks/AWS_IAM_Account_Locking.yml

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -21,4 +21,8 @@ tags:
2121
vpe_type: Modern
2222
playbook_fields: []
2323
product:
24-
- Splunk SOAR
24+
- Splunk SOAR
25+
use_cases:
26+
- Phishing
27+
- Endpoint
28+
defend_technique_id: D3-AL

playbooks/Active_Directory_Disable_Account_Dispatch.yml

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -22,4 +22,8 @@ tags:
2222
vpe_type: Modern
2323
playbook_fields: []
2424
product:
25-
- Splunk SOAR
25+
- Splunk SOAR
26+
use_cases:
27+
- Phishing
28+
- Endpoint
29+
defend_technique_id: D3-Al

playbooks/Attribute_Lookup_Dispatch.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -16,3 +16,5 @@ tags:
1616
playbook_fields: []
1717
product:
1818
- Splunk SOAR
19+
use_cases:
20+
- Enrichment

playbooks/Azure_AD_Account_Locking.yml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -22,3 +22,7 @@ tags:
2222
playbook_fields: []
2323
product:
2424
- Splunk SOAR
25+
use_cases:
26+
- Phishing
27+
- Endpoint
28+
defend_technique_id: D3-AL

playbooks/Azure_AD_Graph_User_Attribute_Lookup.yml

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -20,4 +20,6 @@ tags:
2020
vpe_type: Modern
2121
playbook_fields: []
2222
product:
23-
- Splunk SOAR
23+
- Splunk SOAR
24+
use_cases:
25+
- Enrichment

playbooks/Cisco_Umbrella_DNS_Denylisting.yml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -22,3 +22,7 @@ tags:
2222
playbook_fields: []
2323
product:
2424
- Splunk SOAR
25+
use_cases:
26+
- Phishing
27+
- Endpoint
28+
defend_technique_id: D3-DNSDL

playbooks/CrowdStrike_OAuth_API_Device_Attribute_Lookup.yml

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,3 +23,6 @@ tags:
2323
playbook_fields: []
2424
product:
2525
- Splunk SOAR
26+
use_cases:
27+
- Enrichment
28+
- Endpoint

playbooks/CrowdStrike_OAuth_API_Dynamic_Analysis.yml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,3 +23,8 @@ tags:
2323
playbook_fields: []
2424
product:
2525
- Splunk SOAR
26+
use_cases:
27+
- Enrichment
28+
- Phishing
29+
- Endpoint
30+
defend_technique_id: D3-DA

0 commit comments

Comments
 (0)