GitHub Protected branch rejected ref update.
Description
GitHub Protected branch rejected ref update.
Query · wazuh
field github.action="protected_branch.rejected_ref_update"
Fires when
Wazuh evaluates a chain top-down. Every rule above this one must match on the same event before this rule is tested at all.
-
decoded_as=json AND field integration="github" -
field github.action="^protected_branch.\.*" -
field github.action="protected_branch.rejected_ref_update"
Rule dependencies
Depends on
-
composes · Wazuh if_sid
91275