Class: Google::Apis::SecuritycenterV1beta1::Indicator

Inherits:
Object
  • Object
show all
Includes:
Core::Hashable, Core::JsonObjectSupport
Defined in:
lib/google/apis/securitycenter_v1beta1/classes.rb,
lib/google/apis/securitycenter_v1beta1/representations.rb,
lib/google/apis/securitycenter_v1beta1/representations.rb

Overview

Represents what's commonly known as an Indicator of compromise (IoC) in computer forensics. This is an artifact observed on a network or in an operating system that, with high confidence, indicates a computer intrusion. Reference: https://en.wikipedia.org/wiki/Indicator_of_compromise

Instance Attribute Summary collapse

Instance Method Summary collapse

Constructor Details

#initialize(**args) ⇒ Indicator

Returns a new instance of Indicator.



2461
2462
2463
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2461

def initialize(**args)
   update!(**args)
end

Instance Attribute Details

#domainsArray<String>

List of domains associated to the Finding. Corresponds to the JSON property domains

Returns:

  • (Array<String>)


2443
2444
2445
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2443

def domains
  @domains
end

#ip_addressesArray<String>

List of ip addresses associated to the Finding. Corresponds to the JSON property ipAddresses

Returns:

  • (Array<String>)


2448
2449
2450
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2448

def ip_addresses
  @ip_addresses
end

#signaturesArray<Google::Apis::SecuritycenterV1beta1::ProcessSignature>

The list of matched signatures indicating that the given process is present in the environment. Corresponds to the JSON property signatures



2454
2455
2456
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2454

def signatures
  @signatures
end

#urisArray<String>

The list of URIs associated to the Findings. Corresponds to the JSON property uris

Returns:

  • (Array<String>)


2459
2460
2461
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2459

def uris
  @uris
end

Instance Method Details

#update!(**args) ⇒ Object

Update properties of this object



2466
2467
2468
2469
2470
2471
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2466

def update!(**args)
  @domains = args[:domains] if args.key?(:domains)
  @ip_addresses = args[:ip_addresses] if args.key?(:ip_addresses)
  @signatures = args[:signatures] if args.key?(:signatures)
  @uris = args[:uris] if args.key?(:uris)
end