Skip to content

feat(rules/bitdefender_gz): update detection rules and add phishing_access_blocked - #2432

Open
JocLRojas wants to merge 1 commit into
v11from
backlog/rules-bitdefender-gz-updates
Open

feat(rules/bitdefender_gz): update detection rules and add phishing_access_blocked#2432
JocLRojas wants to merge 1 commit into
v11from
backlog/rules-bitdefender-gz-updates

Conversation

@JocLRojas

Copy link
Copy Markdown
Contributor

What changed

  • Updated 20 existing Bitdefender GravityZone detection rules.
  • Added a new rule: phishing_access_blocked.yaml.

Why

Refresh of the Bitdefender GravityZone rule set to improve detections and add coverage for phishing access blocked events.

Related issue

N/A

@JocLRojas
JocLRojas requested a review from a team August 5, 2026 14:46
@github-actions

github-actions Bot commented Aug 5, 2026

Copy link
Copy Markdown

❌ Go dependencies check failed

There are outdated Go dependencies, or modules that could not be inspected.
Run bash .github/scripts/go-deps.sh --update --discover locally and
commit the updated go.mod / go.sum files.

Script output
🔍 Discovered 26 Go projects

📦 Dependencies with updates available:

  📁 ./agent-manager:
     - google.golang.org/grpc: v1.82.1 → v1.83.0
     - gorm.io/driver/postgres: v1.6.0 → v1.6.2

  📁 ./plugins/bitdefender:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/o365:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/sophos:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/crowdstrike:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/gcp:
     - google.golang.org/api: v0.290.0 → v0.292.0
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/inputs:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/azure:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/aws:
     - github.com/aws/aws-sdk-go-v2: v1.43.0 → v1.43.3
     - github.com/aws/aws-sdk-go-v2/config: v1.32.31 → v1.32.34
     - github.com/aws/aws-sdk-go-v2/credentials: v1.19.30 → v1.19.33
     - github.com/aws/aws-sdk-go-v2/service/cloudwatchlogs: v1.80.0 → v1.81.0
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./plugins/modules-config:
     - github.com/aws/aws-sdk-go-v2/config: v1.32.31 → v1.32.34
     - github.com/aws/aws-sdk-go-v2/credentials: v1.19.30 → v1.19.33
     - github.com/aws/aws-sdk-go-v2/service/cloudwatchlogs: v1.80.0 → v1.81.0
     - github.com/aws/aws-sdk-go-v2/service/sts: v1.45.0 → v1.45.3
     - google.golang.org/api: v0.290.0 → v0.292.0
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./as400:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./agent:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

  📁 ./utmstack-collector:
     - google.golang.org/grpc: v1.82.1 → v1.83.0

�[0;31m❌ Please update dependencies before merging.�[0m

@github-actions

github-actions Bot commented Aug 5, 2026

Copy link
Copy Markdown

✅ AI review — Approved

No issues detected in this diff.

architecture (gemini-3-flash-lite) — clean

Summary: No reviewable changes in this diff (excluded paths only).

No findings.

bugs (gemini-3-flash-lite) — clean

Summary: No reviewable changes in this diff (excluded paths only).

No findings.

security (gemini-3-flash-lite) — clean

Summary: No reviewable changes in this diff (excluded paths only).

No findings.

@utmstackprapprover utmstackprapprover Bot left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Changes requested — Go dependencies check failed (see above).

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant