Synopsis
SIEM Pull Service has detected via Splunk query that, on this Linux system, a service or daemon was started.
Description
SIEM Pull Service has detected via Splunk query that, on this Linux system, a service or daemon was started. The query used was ("type=DAEMON_START" OR type="SERVICE_START" OR "systemd: Start*" OR "Successfully activated service" OR "service is marked executable")