From 283a84ef24314af5dd649e3bf0c753cfa5aef3a9 Mon Sep 17 00:00:00 2001 From: Terrance DeJesus <99630311+terrancedejesus@users.noreply.github.com> Date: Mon, 1 Apr 2024 11:01:20 -0400 Subject: [PATCH] [Rule Deprecation] Deprecate `Remote File Creation on a Sensitive Directory` (#3477) * deprecating * adjusted matury tag; updated dates (cherry picked from commit d4bf04256d96aa26ef5cf45bb6be201176aba1f2) --- ...movement_remote_file_creation_in_sensitive_directory.toml | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) rename rules/{cross-platform => _deprecated}/lateral_movement_remote_file_creation_in_sensitive_directory.toml (95%) diff --git a/rules/cross-platform/lateral_movement_remote_file_creation_in_sensitive_directory.toml b/rules/_deprecated/lateral_movement_remote_file_creation_in_sensitive_directory.toml similarity index 95% rename from rules/cross-platform/lateral_movement_remote_file_creation_in_sensitive_directory.toml rename to rules/_deprecated/lateral_movement_remote_file_creation_in_sensitive_directory.toml index c57b924e10f..239ffe6d77d 100644 --- a/rules/cross-platform/lateral_movement_remote_file_creation_in_sensitive_directory.toml +++ b/rules/_deprecated/lateral_movement_remote_file_creation_in_sensitive_directory.toml @@ -1,10 +1,11 @@ [metadata] creation_date = "2023/10/12" integration = ["endpoint"] -maturity = "production" +maturity = "deprecated" +deprecation_date = "2024/04/01" min_stack_comments = "Avoding rule duplication for <= 8.8 stack versions" min_stack_version = "8.9.0" -updated_date = "2024/03/11" +updated_date = "2024/04/01" [rule] author = ["Elastic"]