fix: 调整detection列表和下拉中的描述字段逻辑
This commit is contained in:
@@ -3,17 +3,18 @@
|
||||
<div class="overview__left">
|
||||
<div class="overview__title">{{ $t('overall.remark') }}</div>
|
||||
<div class="overview__row">
|
||||
<div class="row__content1" v-if="detection.malware">
|
||||
<span class="row__content--link">
|
||||
{{ $_.get(detection, 'malware.mitreAttackDescription', '-') || '-' }}
|
||||
</span>
|
||||
<div class="row__content1" v-if="detection.eventType === 'Command and Control' && detection.eventName === 'Cobalt Strike'">
|
||||
<span class="row__content--link">{{detection.victimIp}}</span> communicated with <span class="row__content--link">{{detection.offenderIp}}</span> that was associated with the indicator of Cobalt Strike activity, {{$_.get(detection, 'eventInfoObj.ioc_value', '') || ''}}.
|
||||
</div>
|
||||
<div class="row__content1" v-if="detection.darkweb">
|
||||
<span class="row__content--link">
|
||||
{{ $_.get(detection, 'malware.mitreAttackDescription', '-') || '-' }}
|
||||
</span>
|
||||
<div class="row__content1" v-else-if="detection.eventType === 'Command and Control' && detection.eventName === 'Mirai'">
|
||||
<span class="row__content--link">{{detection.victimIp}}</span> communicated with <span class="row__content--link">{{detection.offenderIp}}</span> that was associated with the indicator of Mirai attacks, {{$_.get(detection, 'eventInfoObj.ioc_value', '') || ''}}.
|
||||
</div>
|
||||
<div class="row__content1" v-else-if="detection.eventType === 'Anonymity'">
|
||||
<span class="row__content--link">{{detection.victimIp}}</span> communicated with <span class="row__content--link">{{detection.offenderIp}}</span> that was associated with the indicator of Tor/I2P/MTProxy/Obfs4/Snowflake/GeneralBridge, {{$_.get(detection, 'eventInfoObj.ioc_value', '') || ''}}.
|
||||
</div>
|
||||
<div class="row__content1" v-else>
|
||||
{{basicInfo.ruleDescription || '-'}}
|
||||
</div>
|
||||
<span v-else>-</span>
|
||||
</div>
|
||||
<div class="overview__title">Fields</div>
|
||||
<div class="overview__row">
|
||||
@@ -456,6 +457,13 @@ export default {
|
||||
}
|
||||
})
|
||||
}
|
||||
if (this.detection.ruleId) {
|
||||
axios.get(`${api.detection.detail}/${this.detection.ruleId}`).then(res => {
|
||||
if (res.status === 200) {
|
||||
this.basicInfo.ruleDescription = res.data.data.description
|
||||
}
|
||||
})
|
||||
}
|
||||
},
|
||||
queryEvent () {
|
||||
axios.get(api.detection.securityEvent.relationEvent, {
|
||||
|
||||
Reference in New Issue
Block a user