Class: Google::Apis::SecuritycenterV1beta1::Indicator

Inherits:
Object
  • Object
show all
Includes:
Core::Hashable, Core::JsonObjectSupport
Defined in:
lib/google/apis/securitycenter_v1beta1/classes.rb,
lib/google/apis/securitycenter_v1beta1/representations.rb,
lib/google/apis/securitycenter_v1beta1/representations.rb

Overview

Represents what's commonly known as an Indicator of compromise (IoC) in computer forensics. This is an artifact observed on a network or in an operating system that, with high confidence, indicates a computer intrusion. Reference: https://en.wikipedia.org/wiki/Indicator_of_compromise

Instance Attribute Summary collapse

Instance Method Summary collapse

Constructor Details

#initialize(**args) ⇒ Indicator

Returns a new instance of Indicator.



2653
2654
2655
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2653

def initialize(**args)
   update!(**args)
end

Instance Attribute Details

#domainsArray<String>

List of domains associated to the Finding. Corresponds to the JSON property domains

Returns:

  • (Array<String>)


2635
2636
2637
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2635

def domains
  @domains
end

#ip_addressesArray<String>

List of ip addresses associated to the Finding. Corresponds to the JSON property ipAddresses

Returns:

  • (Array<String>)


2640
2641
2642
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2640

def ip_addresses
  @ip_addresses
end

#signaturesArray<Google::Apis::SecuritycenterV1beta1::ProcessSignature>

The list of matched signatures indicating that the given process is present in the environment. Corresponds to the JSON property signatures



2646
2647
2648
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2646

def signatures
  @signatures
end

#urisArray<String>

The list of URIs associated to the Findings. Corresponds to the JSON property uris

Returns:

  • (Array<String>)


2651
2652
2653
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2651

def uris
  @uris
end

Instance Method Details

#update!(**args) ⇒ Object

Update properties of this object



2658
2659
2660
2661
2662
2663
# File 'lib/google/apis/securitycenter_v1beta1/classes.rb', line 2658

def update!(**args)
  @domains = args[:domains] if args.key?(:domains)
  @ip_addresses = args[:ip_addresses] if args.key?(:ip_addresses)
  @signatures = args[:signatures] if args.key?(:signatures)
  @uris = args[:uris] if args.key?(:uris)
end