|
8 | 8 | "searchSourceJSON": "{\"highlightAll\":false,\"version\":true,\"query\":{\"language\":\"lucene\",\"query\":\"*\"},\"filter\":[]}" |
9 | 9 | }, |
10 | 10 | "optionsJSON": "{\"useMargins\":true}", |
11 | | - "panelsJSON": "[{\"version\":\"3.2.0\",\"gridData\":{\"h\":35,\"i\":\"2\",\"w\":8,\"x\":0,\"y\":0},\"panelIndex\":\"2\",\"embeddableConfig\":{},\"panelRefName\":\"panel_0\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":11,\"i\":\"3\",\"w\":34,\"x\":14,\"y\":0},\"panelIndex\":\"3\",\"embeddableConfig\":{\"table\":null,\"vis\":{\"legendOpen\":true}},\"panelRefName\":\"panel_1\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":18,\"i\":\"5\",\"w\":10,\"x\":14,\"y\":11},\"panelIndex\":\"5\",\"embeddableConfig\":{},\"panelRefName\":\"panel_2\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":18,\"i\":\"6\",\"w\":8,\"x\":0,\"y\":35},\"panelIndex\":\"6\",\"embeddableConfig\":{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":1,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":1,\"direction\":\"desc\"}}},\"panelRefName\":\"panel_3\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":18,\"i\":\"7\",\"w\":8,\"x\":0,\"y\":53},\"panelIndex\":\"7\",\"embeddableConfig\":{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":1,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":1,\"direction\":\"desc\"}}},\"panelRefName\":\"panel_4\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":18,\"i\":\"8\",\"w\":10,\"x\":8,\"y\":53},\"panelIndex\":\"8\",\"embeddableConfig\":{\"table\":null,\"vis\":{\"params\":{\"sort\":{\"columnIndex\":2,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":2,\"direction\":\"desc\"}}},\"panelRefName\":\"panel_5\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":25,\"i\":\"11\",\"w\":24,\"x\":24,\"y\":11},\"panelIndex\":\"11\",\"embeddableConfig\":{},\"panelRefName\":\"panel_6\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":18,\"i\":\"12\",\"w\":10,\"x\":38,\"y\":53},\"panelIndex\":\"12\",\"embeddableConfig\":{},\"panelRefName\":\"panel_7\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":18,\"i\":\"13\",\"w\":6,\"x\":8,\"y\":11},\"panelIndex\":\"13\",\"embeddableConfig\":{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":1,\"direction\":\"desc\"}}}},\"panelRefName\":\"panel_8\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":24,\"i\":\"14\",\"w\":48,\"x\":0,\"y\":71},\"panelIndex\":\"14\",\"embeddableConfig\":{},\"panelRefName\":\"panel_9\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":11,\"i\":\"17\",\"w\":6,\"x\":8,\"y\":0},\"panelIndex\":\"17\",\"embeddableConfig\":{},\"panelRefName\":\"panel_10\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":24,\"i\":\"0e155d98-1bd9-4e89-9a2b-3c18ca7d5c6c\",\"w\":16,\"x\":8,\"y\":29},\"panelIndex\":\"0e155d98-1bd9-4e89-9a2b-3c18ca7d5c6c\",\"embeddableConfig\":{\"table\":null,\"vis\":{\"legendOpen\":false}},\"panelRefName\":\"panel_11\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":17,\"i\":\"ee2e2983-4383-49f4-9a1d-c3b49cef7aaf\",\"w\":24,\"x\":24,\"y\":36},\"panelIndex\":\"ee2e2983-4383-49f4-9a1d-c3b49cef7aaf\",\"embeddableConfig\":{},\"panelRefName\":\"panel_12\"},{\"version\":\"3.2.0\",\"gridData\":{\"h\":18,\"i\":\"978c0a0d-4a22-4b08-a1f3-8910250e35de\",\"w\":20,\"x\":18,\"y\":53},\"panelIndex\":\"978c0a0d-4a22-4b08-a1f3-8910250e35de\",\"embeddableConfig\":{},\"panelRefName\":\"panel_13\"}]", |
| 11 | + "panelsJSON": "[{\"version\":\"3.2.0\",\"gridData\":{\"x\":0,\"y\":0,\"w\":8,\"h\":35,\"i\":\"2\"},\"panelIndex\":\"2\",\"embeddableConfig\":{},\"panelRefName\":\"panel_0\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":14,\"y\":0,\"w\":34,\"h\":11,\"i\":\"3\"},\"panelIndex\":\"3\",\"embeddableConfig\":{\"table\":null,\"vis\":{\"legendOpen\":true}},\"panelRefName\":\"panel_1\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":14,\"y\":11,\"w\":10,\"h\":18,\"i\":\"5\"},\"panelIndex\":\"5\",\"embeddableConfig\":{},\"panelRefName\":\"panel_2\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":24,\"y\":11,\"w\":9,\"h\":25,\"i\":\"6\"},\"panelIndex\":\"6\",\"embeddableConfig\":{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":1,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":1,\"direction\":\"desc\"}}},\"panelRefName\":\"panel_3\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":0,\"y\":35,\"w\":8,\"h\":18,\"i\":\"7\"},\"panelIndex\":\"7\",\"embeddableConfig\":{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":1,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":1,\"direction\":\"desc\"}}},\"panelRefName\":\"panel_4\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":0,\"y\":53,\"w\":8,\"h\":18,\"i\":\"8\"},\"panelIndex\":\"8\",\"embeddableConfig\":{\"table\":null,\"vis\":{\"params\":{\"sort\":{\"columnIndex\":2,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":2,\"direction\":\"desc\"}}},\"panelRefName\":\"panel_5\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":33,\"y\":11,\"w\":15,\"h\":25,\"i\":\"11\"},\"panelIndex\":\"11\",\"embeddableConfig\":{},\"panelRefName\":\"panel_6\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":41,\"y\":53,\"w\":7,\"h\":18,\"i\":\"12\"},\"panelIndex\":\"12\",\"embeddableConfig\":{},\"panelRefName\":\"panel_7\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":8,\"y\":11,\"w\":6,\"h\":18,\"i\":\"13\"},\"panelIndex\":\"13\",\"embeddableConfig\":{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":1,\"direction\":\"desc\"}}}},\"panelRefName\":\"panel_8\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":0,\"y\":71,\"w\":48,\"h\":24,\"i\":\"14\"},\"panelIndex\":\"14\",\"embeddableConfig\":{},\"panelRefName\":\"panel_9\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":8,\"y\":0,\"w\":6,\"h\":11,\"i\":\"17\"},\"panelIndex\":\"17\",\"embeddableConfig\":{},\"panelRefName\":\"panel_10\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":8,\"y\":29,\"w\":16,\"h\":42,\"i\":\"0e155d98-1bd9-4e89-9a2b-3c18ca7d5c6c\"},\"panelIndex\":\"0e155d98-1bd9-4e89-9a2b-3c18ca7d5c6c\",\"embeddableConfig\":{\"table\":null,\"vis\":{\"legendOpen\":false}},\"panelRefName\":\"panel_11\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":24,\"y\":36,\"w\":24,\"h\":17,\"i\":\"ee2e2983-4383-49f4-9a1d-c3b49cef7aaf\"},\"panelIndex\":\"ee2e2983-4383-49f4-9a1d-c3b49cef7aaf\",\"embeddableConfig\":{},\"panelRefName\":\"panel_12\"},{\"version\":\"3.2.0\",\"gridData\":{\"x\":24,\"y\":53,\"w\":17,\"h\":18,\"i\":\"978c0a0d-4a22-4b08-a1f3-8910250e35de\"},\"panelIndex\":\"978c0a0d-4a22-4b08-a1f3-8910250e35de\",\"embeddableConfig\":{},\"panelRefName\":\"panel_13\"}]", |
12 | 12 | "timeRestore": false, |
13 | 13 | "title": "Zeek Intelligence", |
14 | 14 | "version": 1 |
|
93 | 93 | } |
94 | 94 | ], |
95 | 95 | "type": "dashboard", |
96 | | - "updated_at": "2025-09-11T22:19:30.784Z", |
97 | | - "version": "WzExMzYsMV0=" |
| 96 | + "updated_at": "2025-09-15T18:07:10.491Z", |
| 97 | + "version": "WzExMzksMV0=" |
98 | 98 | }, |
99 | 99 | { |
100 | 100 | "attributes": { |
|
116 | 116 | ], |
117 | 117 | "references": [], |
118 | 118 | "type": "visualization", |
119 | | - "updated_at": "2025-09-11T21:40:38.628Z", |
| 119 | + "updated_at": "2025-09-15T16:45:36.348Z", |
120 | 120 | "version": "WzExMjMsMV0=" |
121 | 121 | }, |
122 | 122 | { |
|
146 | 146 | } |
147 | 147 | ], |
148 | 148 | "type": "visualization", |
149 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 149 | + "updated_at": "2025-09-15T16:44:21.847Z", |
150 | 150 | "version": "WzI3MSwxXQ==" |
151 | 151 | }, |
152 | 152 | { |
|
176 | 176 | } |
177 | 177 | ], |
178 | 178 | "type": "visualization", |
179 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 179 | + "updated_at": "2025-09-15T16:44:21.847Z", |
180 | 180 | "version": "WzI3MiwxXQ==" |
181 | 181 | }, |
182 | 182 | { |
183 | 183 | "attributes": { |
184 | 184 | "description": "", |
185 | 185 | "kibanaSavedObjectMeta": { |
186 | | - "searchSourceJSON": "{\"filter\":[]}" |
| 186 | + "searchSourceJSON": "{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[]}" |
187 | 187 | }, |
188 | 188 | "savedSearchRefName": "search_0", |
189 | 189 | "title": "Intel - Source", |
190 | | - "uiStateJSON": "{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}", |
| 190 | + "uiStateJSON": "{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}},\"sortColumn\":{\"colIndex\":1,\"direction\":\"desc\"}}}", |
191 | 191 | "version": 1, |
192 | | - "visState": "{\"title\":\"Intel - Source\",\"type\":\"table\",\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMeticsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\"},\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"threat.indicator.provider\",\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"size\":100,\"order\":\"desc\",\"orderBy\":\"1\",\"customLabel\":\"Source\"}}],\"listeners\":{}}" |
| 192 | + "visState": "{\"title\":\"Intel - Source\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"threat.indicator.provider\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Source\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":15,\"showPartialRows\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"showMetricsAtAllLevels\":false,\"percentageCol\":\"\"}}" |
193 | 193 | }, |
194 | 194 | "id": "80cabf50-a849-4e24-a9c7-130cba1a8141", |
195 | 195 | "migrationVersion": { |
|
206 | 206 | } |
207 | 207 | ], |
208 | 208 | "type": "visualization", |
209 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
210 | | - "version": "WzI3MywxXQ==" |
| 209 | + "updated_at": "2025-09-15T18:05:52.908Z", |
| 210 | + "version": "WzExMzgsMV0=" |
211 | 211 | }, |
212 | 212 | { |
213 | 213 | "attributes": { |
|
236 | 236 | } |
237 | 237 | ], |
238 | 238 | "type": "visualization", |
239 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 239 | + "updated_at": "2025-09-15T16:44:21.847Z", |
240 | 240 | "version": "WzI3NCwxXQ==" |
241 | 241 | }, |
242 | 242 | { |
|
266 | 266 | } |
267 | 267 | ], |
268 | 268 | "type": "visualization", |
269 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 269 | + "updated_at": "2025-09-15T16:44:21.847Z", |
270 | 270 | "version": "WzI3NSwxXQ==" |
271 | 271 | }, |
272 | 272 | { |
|
277 | 277 | }, |
278 | 278 | "savedSearchRefName": "search_0", |
279 | 279 | "title": "Intel - Indicator", |
280 | | - "uiStateJSON": "{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":3,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":5,\"direction\":\"desc\"}}}", |
| 280 | + "uiStateJSON": "{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":3,\"direction\":\"desc\"}},\"sortColumn\":{\"colIndex\":3,\"direction\":\"desc\"}}}", |
281 | 281 | "version": 1, |
282 | | - "visState": "{\"title\":\"Intel - Indicator\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"6\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"zeek.intel.category\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":250,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":true,\"missingBucketLabel\":\"-\",\"customLabel\":\"Category\"},\"schema\":\"bucket\"},{\"id\":\"5\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"threat.indicator.description\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":250,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":true,\"missingBucketLabel\":\"-\",\"customLabel\":\"Description\"},\"schema\":\"bucket\"},{\"id\":\"3\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"threat.indicator.type\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Type\"},\"schema\":\"bucket\"},{\"id\":\"4\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"zeek.intel.seen_where\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Seen Where\"},\"schema\":\"bucket\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"threat.indicator.name\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Indicator\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":15,\"showPartialRows\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"showMetricsAtAllLevels\":false,\"percentageCol\":\"\"}}" |
| 282 | + "visState": "{\"title\":\"Intel - Indicator\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"3\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"threat.indicator.type\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Type\"},\"schema\":\"bucket\"},{\"id\":\"4\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"zeek.intel.seen_where\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Seen Where\"},\"schema\":\"bucket\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"threat.indicator.name\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Indicator\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":15,\"showPartialRows\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"showMetricsAtAllLevels\":false,\"percentageCol\":\"\"}}" |
283 | 283 | }, |
284 | 284 | "id": "a2d0a8bb-a6a2-4a1e-826c-0ce3ea8ff074", |
285 | 285 | "migrationVersion": { |
|
296 | 296 | } |
297 | 297 | ], |
298 | 298 | "type": "visualization", |
299 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
300 | | - "version": "WzI3NiwxXQ==" |
| 299 | + "updated_at": "2025-09-15T18:04:44.043Z", |
| 300 | + "version": "WzExMzcsMV0=" |
301 | 301 | }, |
302 | 302 | { |
303 | 303 | "attributes": { |
|
326 | 326 | } |
327 | 327 | ], |
328 | 328 | "type": "visualization", |
329 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 329 | + "updated_at": "2025-09-15T16:44:21.847Z", |
330 | 330 | "version": "WzI3NywxXQ==" |
331 | 331 | }, |
332 | 332 | { |
|
356 | 356 | } |
357 | 357 | ], |
358 | 358 | "type": "visualization", |
359 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 359 | + "updated_at": "2025-09-15T16:44:21.847Z", |
360 | 360 | "version": "WzI3OCwxXQ==" |
361 | 361 | }, |
362 | 362 | { |
|
403 | 403 | } |
404 | 404 | ], |
405 | 405 | "type": "search", |
406 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 406 | + "updated_at": "2025-09-15T16:44:21.847Z", |
407 | 407 | "version": "WzI3OSwxXQ==" |
408 | 408 | }, |
409 | 409 | { |
|
433 | 433 | } |
434 | 434 | ], |
435 | 435 | "type": "visualization", |
436 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 436 | + "updated_at": "2025-09-15T16:44:21.847Z", |
437 | 437 | "version": "WzI4MCwxXQ==" |
438 | 438 | }, |
439 | 439 | { |
|
463 | 463 | } |
464 | 464 | ], |
465 | 465 | "type": "visualization", |
466 | | - "updated_at": "2025-09-11T22:18:57.818Z", |
467 | | - "version": "WzExMzUsMV0=" |
| 466 | + "updated_at": "2025-09-15T18:08:01.106Z", |
| 467 | + "version": "WzExNDAsMV0=" |
468 | 468 | }, |
469 | 469 | { |
470 | 470 | "attributes": { |
|
493 | 493 | } |
494 | 494 | ], |
495 | 495 | "type": "visualization", |
496 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 496 | + "updated_at": "2025-09-15T16:44:21.847Z", |
497 | 497 | "version": "WzI4MiwxXQ==" |
498 | 498 | }, |
499 | 499 | { |
|
523 | 523 | } |
524 | 524 | ], |
525 | 525 | "type": "visualization", |
526 | | - "updated_at": "2025-09-11T21:39:24.222Z", |
| 526 | + "updated_at": "2025-09-15T16:44:21.847Z", |
527 | 527 | "version": "WzI4MywxXQ==" |
528 | 528 | } |
529 | 529 | ], |
|
0 commit comments