Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Original file line number Diff line number Diff line change
Expand Up @@ -161,21 +161,21 @@ tests:
method: "executeQuery()"
stack:
-
fileName: "ObservationFilterChainDecorator.java"
shortSummary: "wrapFilter() @ ObservationFilterChainDecorator.java:240"
className: "org.springframework.security.web.ObservationFilterChainDecorator$ObservationFilter"
description: "org.springframework.security.web.ObservationFilterChainDecorator$ObservationFilter.wrapFilter(ObservationFilterChainDecorator.java:240)"
fileName: "ObservationFilterChainDecorator.java"
lineNumber: 240
methodName: "wrapFilter"
className: "org.springframework.security.web.ObservationFilterChainDecorator$ObservationFilter"
shortSummary: "wrapFilter() @ ObservationFilterChainDecorator.java:240"
type: "frameCommon"
lineNumber: 240
-
fileName: "ObservationFilterChainDecorator.java"
shortSummary: "doFilter() @ ObservationFilterChainDecorator.java:227"
className: "org.springframework.security.web.ObservationFilterChainDecorator$ObservationFilter"
description: "org.springframework.security.web.ObservationFilterChainDecorator$ObservationFilter.doFilter(ObservationFilterChainDecorator.java:227)"
fileName: "ObservationFilterChainDecorator.java"
lineNumber: 227
methodName: "doFilter"
className: "org.springframework.security.web.ObservationFilterChainDecorator$ObservationFilter"
shortSummary: "doFilter() @ ObservationFilterChainDecorator.java:227"
type: "frameCommon"
lineNumber: 227
detectedTime: "1765979488"
environment: "production"
eventUuid: "1678918a-103f-4030-a416-3b8766e47e19"
Expand Down
8 changes: 4 additions & 4 deletions doppler/assets/logs/doppler_tests.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -29,9 +29,9 @@ tests:
title: "Activity Log: wpmULcSfO9sNxKdVUeaO0HK2"
type: "services.datadog.connect"
usr:
email: "nic.manoogian@doppler.com"
name: "Nic Manoogian"
profileImageUrl: "https://www.gravatar.com/avatar/7f447a6cfe4f594f91c149b9c9ca872d?s=500&d=retro"
email: "nic.manoogian@doppler.com"
username: "nic"
workplace:
id: "30bd9e7d881446ce1bf8"
Expand Down Expand Up @@ -78,9 +78,9 @@ tests:
title: "Activity Log: fOypzrlnQ6H3OMLq6RV12ZMO"
type: "enclave.project.create"
usr:
email: "nic.manoogian@doppler.com"
name: "Nic Manoogian"
profileImageUrl: "https://www.gravatar.com/avatar/7f447a6cfe4f594f91c149b9c9ca872d?s=500&d=retro"
email: "nic.manoogian@doppler.com"
username: "nic"
workplace:
id: "30bd9e7d881446ce1bf8"
Expand Down Expand Up @@ -141,9 +141,9 @@ tests:
title: "Activity Log: Z3XK3tynBCd3u7bzBKJS6ntN"
type: "enclave.project.config.secrets.update"
usr:
email: "nic.manoogian@doppler.com"
name: "Nic Manoogian"
profileImageUrl: "https://www.gravatar.com/avatar/7f447a6cfe4f594f91c149b9c9ca872d?s=500&d=retro"
email: "nic.manoogian@doppler.com"
username: "nic"
workplace:
id: "30bd9e7d881446ce1bf8"
Expand Down Expand Up @@ -189,8 +189,8 @@ tests:
type: "team.seat.update"
usr:
email: "nic.manoogian@doppler.com"
profileImageUrl: "https://www.gravatar.com/avatar/7f447a6cfe4f594f91c149b9c9ca872d?s=500&d=retro"
name: "Nic Manoogian"
profileImageUrl: "https://www.gravatar.com/avatar/7f447a6cfe4f594f91c149b9c9ca872d?s=500&d=retro"
username: "nic"
workplace:
id: "30bd9e7d881446ce1bf8"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -617,14 +617,14 @@ tests:
severity: "info"
signatures:
-
accuracy: "medium_accuracy"
attack_type: "ATTACK_TYPE_PATH_TRAVERSAL"
matching_info: "Matched 8 characters on offset 0 against value: 'GET /../../../../etc/shadow HTTP/1.1rnhost: demo.xc.f5demo.netr'. "
context: "url"
name: "Directory Traversal attempt \"../\" (URI)"
accuracy: "medium_accuracy"
id: "200007029"
state: "Enabled"
id_name: "200007029, Directory Traversal attempt \"../\" (URI)"
matching_info: "Matched 8 characters on offset 0 against value: 'GET /../../../../etc/shadow HTTP/1.1rnhost: demo.xc.f5demo.netr'. "
name: "Directory Traversal attempt \"../\" (URI)"
state: "Enabled"
site: "fr4-fra"
sni: "demo.xc.f5demo.net"
source: "N:public"
Expand All @@ -640,16 +640,16 @@ tests:
- "IP"
results:
-
indicator: "10.10.10.10"
additional_data:
ipsets: "tor_exit_nodes"
ipsets_about: "An ipset made from tor exit nodes updated every 30 minutes."
category: "tor"
indicator: "10.10.10.10"
intention: "unknown"
source:
name: "Tor Exit Nodes"
url: "https://www.dan.me.uk/torlist/?exit"
type: "IP"
category: "tor"
intention: "unknown"
time: "2024-07-15T09:56:47.281Z"
tls_fingerprint: "d0ee3237a14bbd89ca4d2b5356ab20ba"
usr:
Expand All @@ -660,8 +660,8 @@ tests:
violations:
-
attack_type: "ATTACK_TYPE_DETECTION_EVASION"
matching_info: "Matched 13 characters on offset 0 against value: '/../../../../etc/shadow'. "
context: "url"
matching_info: "Matched 13 characters on offset 0 against value: '/../../../../etc/shadow'. "
name: "VIOL_EVASION_DIRECTORY_TRAVERSALS"
state: "Enabled"
waf_mode: "block"
Expand Down Expand Up @@ -1062,16 +1062,16 @@ tests:
- "IP"
results:
-
indicator: "10.10.10.10"
additional_data:
ipsets: "tor_exit_nodes"
ipsets_about: "An ipset made from tor exit nodes updated every 30 minutes."
category: "tor"
indicator: "10.10.10.10"
intention: "unknown"
source:
name: "Tor Exit Nodes"
url: "https://www.dan.me.uk/torlist/?exit"
type: "IP"
category: "tor"
intention: "unknown"
time: "2024-07-15T09:58:23.671Z"
tls_fingerprint: "d0ee3237a14bbd89ca4d2b5356ab20ba"
usr:
Expand Down Expand Up @@ -1449,16 +1449,16 @@ tests:
- "IP"
results:
-
indicator: "10.10.10.10"
additional_data:
ipsets: "tor_exit_nodes"
ipsets_about: "An ipset made from tor exit nodes updated every 30 minutes."
category: "tor"
indicator: "10.10.10.10"
intention: "unknown"
source:
name: "Tor Exit Nodes"
url: "https://www.dan.me.uk/torlist/?exit"
type: "IP"
category: "tor"
intention: "unknown"
time: "2024-07-15T09:58:20.672Z"
tls_fingerprint: "d0ee3237a14bbd89ca4d2b5356ab20ba"
usr:
Expand Down
14 changes: 7 additions & 7 deletions invary/assets/logs/invary_tests.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -58,26 +58,26 @@ tests:
custom:
checks:
-
result: "SUCCESSFUL"
name: "required.nodes"
-
result: "SUCCESSFUL"
name: "jump.tables"
-
name: "jump.tables"
result: "SUCCESSFUL"
name: "function.pointers"
-
name: "function.pointers"
result: "SUCCESSFUL"
name: "task.gates"
-
name: "task.gates"
result: "SUCCESSFUL"
name: "task.tree"
-
name: "task.tree"
result: "SUCCESSFUL"
name: "data.nodes"
-
name: "data.nodes"
result: "SUCCESSFUL"
-
name: "nops.table"
result: "SUCCESSFUL"
created: "2023-10-19T14:28:52.604920282Z"
distribution:
codename: "jammy"
Expand Down
Loading
Loading