diff --git a/rules/ml/discovery_ml_linux_system_network_configuration_discovery.toml b/rules/ml/discovery_ml_linux_system_network_configuration_discovery.toml index a90f07cae50..51987adea09 100644 --- a/rules/ml/discovery_ml_linux_system_network_configuration_discovery.toml +++ b/rules/ml/discovery_ml_linux_system_network_configuration_discovery.toml @@ -3,7 +3,7 @@ creation_date = "2020/09/03" maturity = "production" min_stack_comments = "New fields added: required_fields, related_integrations, setup" min_stack_version = "8.3.0" -updated_date = "2023/03/06" +updated_date = "2023/04/24" [rule] anomaly_threshold = 25 @@ -24,7 +24,7 @@ from = "now-45m" interval = "15m" license = "Elastic License v2" machine_learning_job_id = ["v3_linux_network_configuration_discovery"] -name = "Unusual Linux System Network Configuration Discovery" +name = "Unusual Linux Network Configuration Discovery" risk_score = 21 rule_id = "f9590f47-6bd5-4a49-bd49-a2f886476fb9" severity = "low" diff --git a/rules/ml/discovery_ml_linux_system_user_discovery.toml b/rules/ml/discovery_ml_linux_system_user_discovery.toml index 7309195e9af..bbaa0ce25b8 100644 --- a/rules/ml/discovery_ml_linux_system_user_discovery.toml +++ b/rules/ml/discovery_ml_linux_system_user_discovery.toml @@ -1,7 +1,7 @@ [metadata] creation_date = "2020/09/03" maturity = "production" -updated_date = "2023/03/06" +updated_date = "2023/04/24" min_stack_comments = "New fields added: required_fields, related_integrations, setup" min_stack_version = "8.3.0" @@ -24,7 +24,7 @@ from = "now-45m" interval = "15m" license = "Elastic License v2" machine_learning_job_id = ["v3_linux_system_user_discovery"] -name = "Unusual Linux System Owner or User Discovery Activity" +name = "Unusual Linux User Discovery Activity" risk_score = 21 rule_id = "59756272-1998-4b8c-be14-e287035c4d10" severity = "low"