Analytics rules — August 09, 2026
1293 files changed, 53061 insertions, 0 deletions — view the commit on the mirror.
Analytics rule catalog exported for the first time: 1,293 detectors
This is the analytics mirror’s first export, not a day of change to an existing catalog. All 1,293 files under analytics/ are additions — nothing was modified or removed, so there is no prior baseline to diff against.
Each file is one exported detection rule. Given the size and all-additions shape of this commit, individual rules were not read; see the mirror for the full list.
Bulk change — 1,293 files. Per-file diffs are not stored for a change this size; view it on the mirror.
Changes
1293 files listed.
-
▸ ▾ A third-party utility was copied to a different location added +22 −0
analytics/a-third-party-utility-was-copied-to-a-different-locationRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A Torrent client was detected on a host added +42 −0
analytics/a-torrent-client-was-detected-on-a-hostRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user accessed an abnormal number of files on a remote shared folder added +22 −0
analytics/a-user-accessed-an-abnormal-number-of-files-on-a-remote-shared-folderRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user accessed an abnormal number of remote shared folders added +36 −0
analytics/a-user-accessed-an-abnormal-number-of-remote-shared-foldersRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user accessed an uncommon AppID added +90 −0
analytics/a-user-accessed-an-uncommon-appidRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user accessed multiple time-consuming websites added +24 −0
analytics/a-user-accessed-multiple-time-consuming-websitesRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user accessed multiple unusual resources via SSO added +80 −0
analytics/a-user-accessed-multiple-unusual-resources-via-ssoRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user accessed Okta's admin application added +44 −0
analytics/a-user-accessed-okta-s-admin-applicationRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user account was modified to password never expires added +37 −0
analytics/a-user-account-was-modified-to-password-never-expiresRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user added a Windows firewall rule added +22 −0
analytics/a-user-added-a-windows-firewall-ruleRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user attempted to bypass Okta MFA added +38 −0
analytics/a-user-attempted-to-bypass-okta-mfaRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user authenticated with weak NTLM to multiple hosts added +22 −0
analytics/a-user-authenticated-with-weak-ntlm-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user certificate was issued with a mismatch added +45 −0
analytics/a-user-certificate-was-issued-with-a-mismatchRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user changed the Windows system time added +23 −0
analytics/a-user-changed-the-windows-system-timeRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user connected a new USB storage device to a host added +24 −0
analytics/a-user-connected-a-new-usb-storage-device-to-a-hostRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user connected a new USB storage device to multiple hosts added +24 −0
analytics/a-user-connected-a-new-usb-storage-device-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user connected a USB storage device for the first time added +24 −0
analytics/a-user-connected-a-usb-storage-device-for-the-first-timeRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user connected from a new country added +61 −0
analytics/a-user-connected-from-a-new-countryRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user connected to a VPN from a new country added +41 −0
analytics/a-user-connected-to-a-vpn-from-a-new-countryRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user created a pfx file for the first time added +36 −0
analytics/a-user-created-a-pfx-file-for-the-first-timeRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user created an abnormal password-protected archive added +23 −0
analytics/a-user-created-an-abnormal-password-protected-archiveRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user enabled a default local account added +56 −0
analytics/a-user-enabled-a-default-local-accountRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user established an SMB connection to multiple hosts added +49 −0
analytics/a-user-established-an-smb-connection-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user executed multiple LDAP enumeration queries added +44 −0
analytics/a-user-executed-multiple-ldap-enumeration-queriesRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user logged in at an unusual time via SSO added +43 −0
analytics/a-user-logged-in-at-an-unusual-time-via-ssoRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user logged in at an unusual time via VPN added +23 −0
analytics/a-user-logged-in-at-an-unusual-time-via-vpnRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user logged in from an abnormal country or ASN added +40 −0
analytics/a-user-logged-in-from-an-abnormal-country-or-asnRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user logged in to the AWS console for the first time added +44 −0
analytics/a-user-logged-in-to-the-aws-console-for-the-first-timeRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user logged on to multiple workstations via Schannel added +61 −0
analytics/a-user-logged-on-to-multiple-workstations-via-schannelRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user modified an Okta MFA factor added +40 −0
analytics/a-user-modified-an-okta-mfa-factorRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user modified an Okta network zone added +52 −0
analytics/a-user-modified-an-okta-network-zoneRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user modified an Okta policy rule added +42 −0
analytics/a-user-modified-an-okta-policy-ruleRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user modified the CA audit policy added +23 −0
analytics/a-user-modified-the-ca-audit-policyRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user observed and reported unusual activity in Okta added +49 −0
analytics/a-user-observed-and-reported-unusual-activity-in-oktaRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user performed suspiciously massive file activity added +40 −0
analytics/a-user-performed-suspiciously-massive-file-activityRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user printed an unusual number of files added +23 −0
analytics/a-user-printed-an-unusual-number-of-filesRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user queried AD CS objects via LDAP added +40 −0
analytics/a-user-queried-ad-cs-objects-via-ldapRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user received multiple weakly encrypted service tickets added +37 −0
analytics/a-user-received-multiple-weakly-encrypted-service-ticketsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user rejected an SSO request from an unusual country added +24 −0
analytics/a-user-rejected-an-sso-request-from-an-unusual-countryRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user requested multiple service tickets added +37 −0
analytics/a-user-requested-multiple-service-ticketsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user sent multiple TGT requests to irregular service added +50 −0
analytics/a-user-sent-multiple-tgt-requests-to-irregular-serviceRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user took numerous screenshots added +23 −0
analytics/a-user-took-numerous-screenshotsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user uploaded malware to SharePoint or OneDrive added +55 −0
analytics/a-user-uploaded-malware-to-sharepoint-or-onedriveRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A user was added to a Windows security group added +86 −0
analytics/a-user-was-added-to-a-windows-security-groupRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ A WMI subscriber was created added +23 −0
analytics/a-wmi-subscriber-was-createdRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal Allocation of compute resources in multiple regions added +86 −0
analytics/abnormal-allocation-of-compute-resources-in-multiple-regionsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal Communication to a Rare Domain added +64 −0
analytics/abnormal-communication-to-a-rare-domainRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal communication with a rare combination of TLS and HTTP User Agent added +56 −0
analytics/abnormal-communication-with-a-rare-combination-of-tls-and-http-user-agentRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal connections to a dormant host from a newly seen endpoint added +37 −0
analytics/abnormal-connections-to-a-dormant-host-from-a-newly-seen-endpointRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal File Activity in SCCMContentLib Shared Folder by user added +40 −0
analytics/abnormal-file-activity-in-sccmcontentlib-shared-folder-by-userRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal ICMP echo (PING) to multiple hosts added +22 −0
analytics/abnormal-icmp-echo-ping-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal increase in network-related alerts on the same host added +23 −0
analytics/abnormal-increase-in-network-related-alerts-on-the-same-hostRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal network communication through TOR using an uncommon port added +52 −0
analytics/abnormal-network-communication-through-tor-using-an-uncommon-portRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal network communication with a rare combination of HTTP User Agent and HTTP Server added +41 −0
analytics/abnormal-network-communication-with-a-rare-combination-of-http-user-agent-and-http-serverRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal process connection to default Meterpreter port added +36 −0
analytics/abnormal-process-connection-to-default-meterpreter-portRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal RDP connections to multiple hosts from a rarely seen host added +22 −0
analytics/abnormal-rdp-connections-to-multiple-hosts-from-a-rarely-seen-hostRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal RDP connections to multiple hosts added +36 −0
analytics/abnormal-rdp-connections-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal RDP session to a remote host from a rarely seen host added +24 −0
analytics/abnormal-rdp-session-to-a-remote-host-from-a-rarely-seen-hostRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal Recurring Communications to a Rare Domain added +77 −0
analytics/abnormal-recurring-communications-to-a-rare-domainRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal RPC traffic to multiple hosts added +39 −0
analytics/abnormal-rpc-traffic-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal sensitive RPC traffic to multiple hosts from a rarely seen host added +23 −0
analytics/abnormal-sensitive-rpc-traffic-to-multiple-hosts-from-a-rarely-seen-hostRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal sensitive RPC traffic to multiple hosts added +37 −0
analytics/abnormal-sensitive-rpc-traffic-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal SMB activity to multiple hosts added +75 −0
analytics/abnormal-smb-activity-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal SMB scanning activity to multiple hosts added +75 −0
analytics/abnormal-smb-scanning-activity-to-multiple-hostsRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Abnormal User Login to Domain Controller added +85 −0
analytics/abnormal-user-login-to-domain-controllerRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Access to kubelet credentials file added +36 −0
analytics/access-to-kubelet-credentials-fileRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Access to Kubernetes CA certificate file added +36 −0
analytics/access-to-kubernetes-ca-certificate-fileRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Access to Kubernetes configuration file added +49 −0
analytics/access-to-kubernetes-configuration-fileRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Access to sensitive host files from within a Kubernetes pod added +49 −0
analytics/access-to-sensitive-host-files-from-within-a-kubernetes-podRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Account probing added +24 −0
analytics/account-probingRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Adding execution privileges added +36 −0
analytics/adding-execution-privilegesRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ ADFS DKM Key Access added +23 −0
analytics/adfs-dkm-key-accessRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Admin privileges were granted to a Google Workspace user added +22 −0
analytics/admin-privileges-were-granted-to-a-google-workspace-userRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Administrator groups enumerated via LDAP added +23 −0
analytics/administrator-groups-enumerated-via-ldapRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ AI-determined combination of risky alerts under the same actor process added +39 −0
analytics/ai-determined-combination-of-risky-alerts-under-the-same-actor-processRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ AI-determined combination of risky alerts under the same causality added +24 −0
analytics/ai-determined-combination-of-risky-alerts-under-the-same-causalityRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ AI model discovery added +24 −0
analytics/ai-model-discoveryRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ AI safeguards deletion attempt added +37 −0
analytics/ai-safeguards-deletion-attemptRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ AI safeguards were modified added +50 −0
analytics/ai-safeguards-were-modifiedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ Allocation of multiple cloud compute resources added +102 −0
analytics/allocation-of-multiple-cloud-compute-resourcesRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An app was added to Google Marketplace added +62 −0
analytics/an-app-was-added-to-google-marketplaceRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An app was added to the Google Workspace trusted OAuth apps list added +49 −0
analytics/an-app-was-added-to-the-google-workspace-trusted-oauth-apps-listRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An app was removed from a blocked list in Google Workspace added +62 −0
analytics/an-app-was-removed-from-a-blocked-list-in-google-workspaceRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS database service master user password was changed added +49 −0
analytics/an-aws-database-service-master-user-password-was-changedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS EC2 instance containing sensitive data was exported added +22 −0
analytics/an-aws-ec2-instance-containing-sensitive-data-was-exportedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS EC2 instance was exported from a production account added +22 −0
analytics/an-aws-ec2-instance-was-exported-from-a-production-accountRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS EC2 instance was exported into an unknown S3 bucket added +22 −0
analytics/an-aws-ec2-instance-was-exported-into-an-unknown-s3-bucketRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS EFS File-share mount was deleted added +22 −0
analytics/an-aws-efs-file-share-mount-was-deletedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS EFS file-share was deleted added +22 −0
analytics/an-aws-efs-file-share-was-deletedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS EKS cluster was created or deleted added +24 −0
analytics/an-aws-eks-cluster-was-created-or-deletedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS GuardDuty IP set was created added +22 −0
analytics/an-aws-guardduty-ip-set-was-createdRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS Lambda Function was created added +24 −0
analytics/an-aws-lambda-function-was-createdRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS Lambda function was modified added +22 −0
analytics/an-aws-lambda-function-was-modifiedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS RDS Global Cluster Deletion added +22 −0
analytics/an-aws-rds-global-cluster-deletionRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS RDS instance was created from a snapshot added +22 −0
analytics/an-aws-rds-instance-was-created-from-a-snapshotRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS Route 53 domain was transferred to another AWS account added +22 −0
analytics/an-aws-route-53-domain-was-transferred-to-another-aws-accountRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS S3 bucket configuration was modified added +24 −0
analytics/an-aws-s3-bucket-configuration-was-modifiedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS SAML provider was modified added +24 −0
analytics/an-aws-saml-provider-was-modifiedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An AWS SES identity was deleted added +22 −0
analytics/an-aws-ses-identity-was-deletedRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.
-
▸ ▾ An Azure application reached a throttling API rate added +50 −0
analytics/an-azure-application-reached-a-throttling-api-rateRead it here → This file's diff on GitHub ↗
Generated by the mirror — not a documentation page, so no diff is kept. The counts above still say how much moved.
Diffs are not stored for a change this size — view it on the mirror.