diff --git a/packs/asana.yml b/packs/asana.yml index 14abb221f..e22778505 100644 --- a/packs/asana.yml +++ b/packs/asana.yml @@ -17,4 +17,6 @@ PackDefinition: - panther_asana_helpers - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther Asana Pack" diff --git a/packs/atlassian.yml b/packs/atlassian.yml index 944b942e0..2e9616228 100644 --- a/packs/atlassian.yml +++ b/packs/atlassian.yml @@ -7,4 +7,6 @@ PackDefinition: # Globals used in these detections - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther Atlassian Pack" diff --git a/packs/auth0.yml b/packs/auth0.yml index e1495327c..5ffb82d9d 100644 --- a/packs/auth0.yml +++ b/packs/auth0.yml @@ -18,4 +18,6 @@ PackDefinition: - panther_auth0_helpers - global_filter_auth0 - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther Auth0 Pack" diff --git a/packs/aws.yml b/packs/aws.yml index ee81bd293..3ff011fe8 100644 --- a/packs/aws.yml +++ b/packs/aws.yml @@ -146,3 +146,5 @@ PackDefinition: - panther_lookuptable_helpers - panther_oss_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/aws_cis.yml b/packs/aws_cis.yml index f13fa6325..abb278a91 100644 --- a/packs/aws_cis.yml +++ b/packs/aws_cis.yml @@ -39,4 +39,6 @@ PackDefinition: - panther_base_helpers - panther_oss_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther AWS CIS Pack" diff --git a/packs/azure_signin.yml b/packs/azure_signin.yml index fda95493a..8669bf631 100644 --- a/packs/azure_signin.yml +++ b/packs/azure_signin.yml @@ -11,4 +11,6 @@ PackDefinition: - panther_azuresignin_helpers - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther Azure.Audit SignIn Pack" diff --git a/packs/cloudflare.yml b/packs/cloudflare.yml index 56731ddf3..332d00808 100644 --- a/packs/cloudflare.yml +++ b/packs/cloudflare.yml @@ -15,3 +15,5 @@ PackDefinition: - panther_lookuptable_helpers - global_filter_cloudflare - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/credential_security.yml b/packs/credential_security.yml index 59129ea82..64b3b2a6c 100644 --- a/packs/credential_security.yml +++ b/packs/credential_security.yml @@ -17,6 +17,8 @@ PackDefinition: - panther_default - panther_event_type_helpers - panther_config + - panther_config_defaults + - panther_config_overrides # Rules - AWS.CloudTrail.RootPasswordChanged - AWS.IAM.AccessKeyCompromised diff --git a/packs/crowdstrike.yml b/packs/crowdstrike.yml index 5c2f6cf4e..273913382 100644 --- a/packs/crowdstrike.yml +++ b/packs/crowdstrike.yml @@ -22,6 +22,8 @@ PackDefinition: # Globals used in these detections - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides # Data models - Standard.Crowdstrike.FDR DisplayName: "Panther Crowdstrike Pack" diff --git a/packs/duo.yml b/packs/duo.yml index a0e59e8be..aaa99e3a3 100644 --- a/packs/duo.yml +++ b/packs/duo.yml @@ -23,3 +23,5 @@ PackDefinition: - panther_base_helpers - panther_duo_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/gcp_audit.yml b/packs/gcp_audit.yml index cb667d3f3..15250156a 100644 --- a/packs/gcp_audit.yml +++ b/packs/gcp_audit.yml @@ -40,4 +40,6 @@ PackDefinition: - gcp_base_helpers - gcp_environment - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther GCP Audit Pack" diff --git a/packs/github.yml b/packs/github.yml index 63ab6fa70..bb5de9948 100644 --- a/packs/github.yml +++ b/packs/github.yml @@ -31,3 +31,5 @@ PackDefinition: - panther_oss_helpers - global_filter_github - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/gravitational_teleport.yml b/packs/gravitational_teleport.yml index 076815739..e29f3403d 100644 --- a/packs/gravitational_teleport.yml +++ b/packs/gravitational_teleport.yml @@ -11,4 +11,6 @@ PackDefinition: # Globals used in these detections - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther Teleport Pack" diff --git a/packs/greynoise_advanced.yml b/packs/greynoise_advanced.yml index 09f7971f5..3f0105a66 100644 --- a/packs/greynoise_advanced.yml +++ b/packs/greynoise_advanced.yml @@ -9,4 +9,6 @@ PackDefinition: - panther_greynoise_helpers - panther_lookuptable_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "GreyNoise Advanced" diff --git a/packs/greynoise_basic.yml b/packs/greynoise_basic.yml index eccc80d16..ecaa63bf2 100644 --- a/packs/greynoise_basic.yml +++ b/packs/greynoise_basic.yml @@ -9,4 +9,6 @@ PackDefinition: - panther_greynoise_helpers - panther_lookuptable_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "GreyNoise Basic" diff --git a/packs/ipinfo.yml b/packs/ipinfo.yml index a54fcb2b1..771b49594 100644 --- a/packs/ipinfo.yml +++ b/packs/ipinfo.yml @@ -13,4 +13,6 @@ PackDefinition: - panther_ipinfo_helpers - panther_lookuptable_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "IPInfo" diff --git a/packs/mongodb.yml b/packs/mongodb.yml index 96a34bc5c..7188ae8d3 100644 --- a/packs/mongodb.yml +++ b/packs/mongodb.yml @@ -9,3 +9,5 @@ PackDefinition: # Globals - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/notion.yml b/packs/notion.yml index 3ee9f3cd0..c50e9f5b6 100644 --- a/packs/notion.yml +++ b/packs/notion.yml @@ -21,6 +21,8 @@ PackDefinition: - panther_notion_helpers - global_filter_notion - panther_config + - panther_config_defaults + - panther_config_overrides # Data Model - Standard.Notion.AuditLogs DisplayName: "Panther Notion Pack" diff --git a/packs/okta.yml b/packs/okta.yml index ac5b33ce7..faf4469fb 100644 --- a/packs/okta.yml +++ b/packs/okta.yml @@ -30,6 +30,8 @@ PackDefinition: - panther_oss_helpers - panther_event_type_helpers - panther_config + - panther_config_defaults + - panther_config_overrides # Data Model - Standard.Okta.SystemLog DisplayName: "Panther Okta Pack" diff --git a/packs/onelogin.yml b/packs/onelogin.yml index e004327df..30f8166b5 100644 --- a/packs/onelogin.yml +++ b/packs/onelogin.yml @@ -18,4 +18,6 @@ PackDefinition: - panther_base_helpers - panther_oss_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther OneLogin Pack" diff --git a/packs/onepassword.yml b/packs/onepassword.yml index ecdff0ca0..8ea7183df 100644 --- a/packs/onepassword.yml +++ b/packs/onepassword.yml @@ -12,3 +12,5 @@ PackDefinition: - panther_base_helpers - panther_event_type_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/osquery.yml b/packs/osquery.yml index 193bc32d8..adac2b24d 100644 --- a/packs/osquery.yml +++ b/packs/osquery.yml @@ -17,4 +17,6 @@ PackDefinition: # Globals used in these detections - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther OSQuery Pack" diff --git a/packs/panther.yml b/packs/panther.yml index a2801b129..678ea2ad0 100644 --- a/packs/panther.yml +++ b/packs/panther.yml @@ -13,4 +13,6 @@ PackDefinition: - panther_base_helpers - panther_event_type_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther Audit Logs Pack" diff --git a/packs/sentinelone.yml b/packs/sentinelone.yml index f851060cd..2824e6d8e 100644 --- a/packs/sentinelone.yml +++ b/packs/sentinelone.yml @@ -8,4 +8,6 @@ PackDefinition: # Globals used in these detections - panther_base_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther SentinelOne Pack" diff --git a/packs/slack.yml b/packs/slack.yml index 1d0235f98..4766ae4ea 100644 --- a/packs/slack.yml +++ b/packs/slack.yml @@ -30,3 +30,5 @@ PackDefinition: - panther_base_helpers - panther_oss_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/snyk.yml b/packs/snyk.yml index a0484d41e..68466acae 100644 --- a/packs/snyk.yml +++ b/packs/snyk.yml @@ -19,3 +19,5 @@ PackDefinition: - panther_base_helpers - panther_snyk_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/tailscale.yml b/packs/tailscale.yml index 8a7c4bba5..1eb976890 100644 --- a/packs/tailscale.yml +++ b/packs/tailscale.yml @@ -11,4 +11,6 @@ PackDefinition: - panther_tailscale_helpers - global_filter_tailscale - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Panther Tailscale Pack" diff --git a/packs/tines.yml b/packs/tines.yml index 239486be7..bca8c6bda 100644 --- a/packs/tines.yml +++ b/packs/tines.yml @@ -17,3 +17,5 @@ PackDefinition: - panther_base_helpers - panther_tines_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/tor.yml b/packs/tor.yml index 4cf2397aa..c4360bcad 100644 --- a/packs/tor.yml +++ b/packs/tor.yml @@ -8,4 +8,6 @@ PackDefinition: - panther_lookuptable_helpers - panther_tor_helpers - panther_config + - panther_config_defaults + - panther_config_overrides DisplayName: "Tor Lookup Tables" diff --git a/packs/zendesk.yml b/packs/zendesk.yml index 3abba045e..3476be440 100644 --- a/packs/zendesk.yml +++ b/packs/zendesk.yml @@ -17,3 +17,5 @@ PackDefinition: - panther_base_helpers - panther_event_type_helpers - panther_config + - panther_config_defaults + - panther_config_overrides diff --git a/packs/zoom.yml b/packs/zoom.yml index 4ae78d44b..454d05822 100644 --- a/packs/zoom.yml +++ b/packs/zoom.yml @@ -19,3 +19,5 @@ PackDefinition: - panther_oss_helpers - panther_zoom_helpers - panther_config + - panther_config_defaults + - panther_config_overrides