diff --git a/rules/linux/lnx_system_info_discovery.yml b/rules/linux/lnx_system_info_discovery.yml index 43f8f6563..c0742e26f 100644 --- a/rules/linux/lnx_system_info_discovery.yml +++ b/rules/linux/lnx_system_info_discovery.yml @@ -16,7 +16,7 @@ tags: --- logsource: product: linux - categories: process_creation + category: process_creation detection: selection: Image|endswith: @@ -31,7 +31,7 @@ detection: --- logsource: product: linux - categories: auditd + category: auditd detection: selection: type: 'PATH'