{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - AWS Account(Bar)","uiStateJSON":"{}","version":1,"visState":"{\"type\":\"histogram\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"schema\":\"metric\",\"params\":{\"field\":\"@id\",\"customLabel\":\"Count\"}},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"segment\",\"params\":{\"field\":\"cloud.account.id\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"}},{\"id\":\"3\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"group\",\"params\":{\"field\":\"cloud.account.id\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"}}],\"params\":{\"type\":\"histogram\",\"grid\":{\"categoryLines\":false},\"categoryAxes\":[{\"id\":\"CategoryAxis-1\",\"type\":\"category\",\"position\":\"bottom\",\"show\":false,\"style\":{},\"scale\":{\"type\":\"linear\"},\"labels\":{\"show\":true,\"filter\":true,\"truncate\":100},\"title\":{}}],\"valueAxes\":[{\"id\":\"ValueAxis-1\",\"name\":\"LeftAxis-1\",\"type\":\"value\",\"position\":\"left\",\"show\":true,\"style\":{},\"scale\":{\"type\":\"linear\",\"mode\":\"normal\"},\"labels\":{\"show\":true,\"rotate\":0,\"filter\":false,\"truncate\":100},\"title\":{\"text\":\"Count\"}}],\"seriesParams\":[{\"show\":\"true\",\"type\":\"histogram\",\"mode\":\"stacked\",\"data\":{\"label\":\"Count\",\"id\":\"1\"},\"valueAxis\":\"ValueAxis-1\",\"drawLinesBetweenPoints\":true,\"showCircles\":true}],\"addTooltip\":true,\"addLegend\":true,\"legendPosition\":\"right\",\"times\":[],\"addTimeMarker\":false,\"labels\":{\"show\":false},\"thresholdLine\":{\"show\":false,\"value\":10,\"width\":1,\"style\":\"full\",\"color\":\"#34130C\"},\"dimensions\":{\"x\":{\"accessor\":0,\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"otherBucketLabel\":\"Other\",\"missingBucketLabel\":\"Missing\"}},\"params\":{},\"aggType\":\"terms\"},\"y\":[{\"accessor\":2,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"}],\"series\":[{\"accessor\":1,\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"otherBucketLabel\":\"Other\",\"missingBucketLabel\":\"Missing\"}},\"params\":{},\"aggType\":\"terms\"}]}},\"title\":\"GuardDuty - AWS Account(Bar)\"}"},"id":"094d3070-860a-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T11:40:11.540Z","version":"WzI5MTUsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Region(Bar)","uiStateJSON":"{}","version":1,"visState":"{\"type\":\"histogram\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"schema\":\"metric\",\"params\":{\"field\":\"@id\",\"customLabel\":\"Count\"}},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"segment\",\"params\":{\"field\":\"cloud.region\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"}},{\"id\":\"3\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"group\",\"params\":{\"field\":\"cloud.region\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"}}],\"params\":{\"type\":\"histogram\",\"grid\":{\"categoryLines\":false},\"categoryAxes\":[{\"id\":\"CategoryAxis-1\",\"type\":\"category\",\"position\":\"bottom\",\"show\":false,\"style\":{},\"scale\":{\"type\":\"linear\"},\"labels\":{\"show\":true,\"filter\":true,\"truncate\":100},\"title\":{}}],\"valueAxes\":[{\"id\":\"ValueAxis-1\",\"name\":\"LeftAxis-1\",\"type\":\"value\",\"position\":\"left\",\"show\":true,\"style\":{},\"scale\":{\"type\":\"linear\",\"mode\":\"normal\"},\"labels\":{\"show\":true,\"rotate\":0,\"filter\":false,\"truncate\":100},\"title\":{\"text\":\"Count\"}}],\"seriesParams\":[{\"show\":\"true\",\"type\":\"histogram\",\"mode\":\"stacked\",\"data\":{\"label\":\"Count\",\"id\":\"1\"},\"valueAxis\":\"ValueAxis-1\",\"drawLinesBetweenPoints\":true,\"showCircles\":true}],\"addTooltip\":true,\"addLegend\":true,\"legendPosition\":\"right\",\"times\":[],\"addTimeMarker\":false,\"labels\":{\"show\":false},\"thresholdLine\":{\"show\":false,\"value\":10,\"width\":1,\"style\":\"full\",\"color\":\"#34130C\"},\"dimensions\":{\"x\":{\"accessor\":0,\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"otherBucketLabel\":\"Other\",\"missingBucketLabel\":\"Missing\"}},\"params\":{},\"aggType\":\"terms\"},\"y\":[{\"accessor\":2,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"}],\"series\":[{\"accessor\":1,\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"otherBucketLabel\":\"Other\",\"missingBucketLabel\":\"Missing\"}},\"params\":{},\"aggType\":\"terms\"}]}},\"title\":\"GuardDuty - Region(Bar)\"}"},"id":"181166d0-860a-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T11:40:11.540Z","version":"WzI5MTYsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Findings","uiStateJSON":"{}","version":1,"visState":"{\"title\":\"GuardDuty - Findings\",\"type\":\"metric\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"params\":{\"field\":\"@id\",\"customLabel\":\" \"},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"filters\",\"params\":{\"filters\":[{\"input\":{\"query\":\"ResourceTypeAffected:EC2 AND NOT ThreatFamilyName:(MaliciousFile OR SuspiciousFile)\",\"language\":\"kuery\"},\"label\":\"EC2 finding types\"},{\"input\":{\"query\":\"ResourceTypeAffected:IAMUser\",\"language\":\"kuery\"},\"label\":\"IAM finding types\"},{\"input\":{\"query\":\"ResourceTypeAffected:Kubernetes AND NOT ThreatFamilyName:(MaliciousFile OR SuspiciousFile)\",\"language\":\"kuery\"},\"label\":\"Kubernetes Protection\"},{\"input\":{\"query\":\"ThreatFamilyName:(MaliciousFile OR SuspiciousFile)\",\"language\":\"kuery\"},\"label\":\"Malware Protection\"},{\"input\":{\"query\":\"ResourceTypeAffected:S3\",\"language\":\"kuery\"},\"label\":\"S3 Protection\"}]},\"schema\":\"group\"}],\"params\":{\"addTooltip\":true,\"addLegend\":false,\"type\":\"metric\",\"metric\":{\"percentageMode\":false,\"useRanges\":false,\"colorSchema\":\"Green to Red\",\"metricColorMode\":\"None\",\"colorsRange\":[{\"from\":0,\"to\":10000}],\"labels\":{\"show\":true},\"invertColors\":false,\"style\":{\"bgFill\":\"#000\",\"bgColor\":false,\"labelColor\":false,\"subText\":\"\",\"fontSize\":42}}}}"},"id":"72f65c40-14ce-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T15:05:41.391Z","version":"WzMzNzksMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Severity Count by Findings","uiStateJSON":"{}","version":1,"visState":"{\"title\":\"GuardDuty - Severity Count by Findings\",\"type\":\"metric\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"params\":{\"field\":\"@id\",\"customLabel\":\" \"},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"filters\",\"params\":{\"filters\":[{\"input\":{\"query\":\"severitylabel:high\",\"language\":\"kuery\"},\"label\":\"High\"},{\"input\":{\"query\":\"severitylabel:medium\",\"language\":\"kuery\"},\"label\":\"Medium\"},{\"input\":{\"query\":\"severitylabel:low\",\"language\":\"kuery\"},\"label\":\"Low\"}]},\"schema\":\"group\"}],\"params\":{\"metric\":{\"percentageMode\":false,\"useRanges\":false,\"colorSchema\":\"Green to Red\",\"metricColorMode\":\"None\",\"colorsRange\":[{\"type\":\"range\",\"from\":0,\"to\":10000}],\"labels\":{\"show\":true},\"invertColors\":false,\"style\":{\"bgFill\":\"#000\",\"bgColor\":false,\"labelColor\":false,\"subText\":\"\",\"fontSize\":42}},\"dimensions\":{\"metrics\":[{\"type\":\"vis_dimension\",\"accessor\":1,\"format\":{\"id\":\"number\",\"params\":{}}}],\"bucket\":{\"type\":\"vis_dimension\",\"accessor\":0,\"format\":{\"id\":\"string\",\"params\":{}}}},\"addTooltip\":true,\"addLegend\":false,\"type\":\"metric\"}}"},"id":"fef87760-86f4-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T15:06:43.429Z","version":"WzM0MDgsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Severity Count by Logs","uiStateJSON":"{}","version":1,"visState":"{\"title\":\"GuardDuty - Severity Count by Logs\",\"type\":\"metric\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{\"customLabel\":\" \"},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"filters\",\"params\":{\"filters\":[{\"input\":{\"query\":\"severitylabel:high\",\"language\":\"kuery\"},\"label\":\"High\"},{\"input\":{\"query\":\"severitylabel:medium\",\"language\":\"kuery\"},\"label\":\"Midium\"},{\"input\":{\"query\":\"severitylabel:low\",\"language\":\"kuery\"},\"label\":\"Low\"}]},\"schema\":\"group\"}],\"params\":{\"addTooltip\":true,\"addLegend\":false,\"type\":\"metric\",\"metric\":{\"percentageMode\":false,\"useRanges\":false,\"colorSchema\":\"Green to Red\",\"metricColorMode\":\"None\",\"colorsRange\":[{\"from\":0,\"to\":10000}],\"labels\":{\"show\":true},\"invertColors\":false,\"style\":{\"bgFill\":\"#000\",\"bgColor\":false,\"labelColor\":false,\"subText\":\"\",\"fontSize\":42}}}}"},"id":"63f79b30-3bab-11eb-9df7-6b7b0da6e7ae","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T15:07:02.730Z","version":"WzM0MjIsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"language\":\"kuery\",\"query\":\"\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Severity Count by Logs (Bar)","uiStateJSON":"{\"vis\":{\"colors\":{\"High\":\"#BF1B00\",\"Medium\":\"#F9934E\",\"Low\":\"#508642\"}}}","version":1,"visState":"{\"type\":\"histogram\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"enabled\":true,\"type\":\"date_histogram\",\"schema\":\"segment\",\"params\":{\"field\":\"@timestamp\",\"timeRange\":{\"from\":\"now-1y\",\"to\":\"now\"},\"useNormalizedEsInterval\":true,\"scaleMetricValues\":false,\"interval\":\"auto\",\"drop_partials\":false,\"min_doc_count\":1,\"extended_bounds\":{}}},{\"id\":\"3\",\"enabled\":true,\"type\":\"filters\",\"schema\":\"group\",\"params\":{\"filters\":[{\"label\":\"High\",\"input\":{\"query\":\"severitylabel:high\",\"language\":\"kuery\"}},{\"label\":\"Medium\",\"input\":{\"query\":\"severitylabel:medium\",\"language\":\"kuery\"}},{\"label\":\"Low\",\"input\":{\"query\":\"severitylabel:low\",\"language\":\"kuery\"}}]}}],\"params\":{\"addLegend\":true,\"addTimeMarker\":false,\"addTooltip\":true,\"categoryAxes\":[{\"id\":\"CategoryAxis-1\",\"labels\":{\"filter\":true,\"show\":true,\"truncate\":100},\"position\":\"bottom\",\"scale\":{\"type\":\"linear\"},\"show\":true,\"style\":{},\"title\":{},\"type\":\"category\"}],\"dimensions\":{\"x\":{\"accessor\":0,\"format\":{\"id\":\"date\",\"params\":{\"pattern\":\"YYYY-MM-DD\"}},\"params\":{\"date\":true,\"interval\":\"P1D\",\"format\":\"YYYY-MM-DD\",\"bounds\":{\"min\":\"2020-01-26T13:16:17.019Z\",\"max\":\"2020-04-25T13:16:17.019Z\"}},\"aggType\":\"date_histogram\"},\"y\":[{\"accessor\":2,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"}],\"series\":[{\"accessor\":1,\"format\":{},\"params\":{},\"aggType\":\"filters\"}]},\"grid\":{\"categoryLines\":false},\"labels\":{\"show\":false},\"legendPosition\":\"top\",\"seriesParams\":[{\"data\":{\"id\":\"1\",\"label\":\"Count\"},\"drawLinesBetweenPoints\":true,\"mode\":\"stacked\",\"show\":\"true\",\"showCircles\":true,\"type\":\"histogram\",\"valueAxis\":\"ValueAxis-1\"}],\"thresholdLine\":{\"color\":\"#34130C\",\"show\":false,\"style\":\"full\",\"value\":10,\"width\":1},\"times\":[],\"type\":\"histogram\",\"valueAxes\":[{\"id\":\"ValueAxis-1\",\"labels\":{\"filter\":false,\"rotate\":0,\"show\":true,\"truncate\":100},\"name\":\"LeftAxis-1\",\"position\":\"left\",\"scale\":{\"mode\":\"normal\",\"type\":\"linear\"},\"show\":true,\"style\":{},\"title\":{\"text\":\"Count\"},\"type\":\"value\"}]},\"title\":\"GuardDuty - Severity Count by Logs (Bar)\"}"},"id":"401f74e0-8615-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T11:40:11.540Z","version":"WzI5MTksMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Network Direction","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"schema\":\"metric\",\"params\":{\"field\":\"@id\",\"customLabel\":\"Count\"}},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"bucket\",\"params\":{\"field\":\"network.direction\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"NW Direction\"}}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\",\"dimensions\":{\"metrics\":[{\"accessor\":1,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"}],\"buckets\":[{\"accessor\":0,\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"otherBucketLabel\":\"Other\",\"missingBucketLabel\":\"Missing\"}},\"params\":{},\"aggType\":\"terms\"}]}},\"title\":\"GuardDuty - Network Direction\"}"},"id":"bf3488c0-8786-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T11:40:11.540Z","version":"WzI5MjAsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Affected Instance","uiStateJSON":"{}","version":1,"visState":"{\"title\":\"GuardDuty - Affected Instance\",\"type\":\"pie\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"resource.instanceDetails.instanceId\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":10,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"},\"schema\":\"segment\"}],\"params\":{\"type\":\"pie\",\"addTooltip\":true,\"addLegend\":true,\"legendPosition\":\"right\",\"isDonut\":true,\"labels\":{\"show\":false,\"values\":true,\"last_level\":true,\"truncate\":100},\"dimensions\":{\"metric\":{\"accessor\":0,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"}}}}"},"id":"dc7b8cb0-86f7-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T12:13:45.597Z","version":"WzMxNTUsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"language\":\"kuery\",\"query\":\"\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - ThreatPurpose","uiStateJSON":"{}","version":1,"visState":"{\"title\":\"GuardDuty - ThreatPurpose\",\"type\":\"pie\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"ThreatPurpose\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":30,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"},\"schema\":\"segment\"}],\"params\":{\"type\":\"pie\",\"addTooltip\":true,\"addLegend\":true,\"legendPosition\":\"right\",\"isDonut\":true,\"labels\":{\"show\":false,\"values\":true,\"last_level\":true,\"truncate\":100},\"dimensions\":{\"metric\":{\"accessor\":1,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"},\"buckets\":[{\"accessor\":0,\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"otherBucketLabel\":\"Other\",\"missingBucketLabel\":\"Missing\"}},\"params\":{},\"aggType\":\"terms\"}]}}}"},"id":"3f085520-86fd-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T12:14:24.297Z","version":"WzMxNzEsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"language\":\"kuery\",\"query\":\"\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - ThreatFamilyName","uiStateJSON":"{}","version":1,"visState":"{\"title\":\"GuardDuty - ThreatFamilyName\",\"type\":\"pie\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"params\":{\"field\":\"@id\",\"customLabel\":\"Count\"},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"ThreatFamilyName\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":30,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"},\"schema\":\"segment\"}],\"params\":{\"addLegend\":true,\"addTooltip\":true,\"dimensions\":{\"buckets\":[{\"accessor\":0,\"aggType\":\"terms\",\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"missingBucketLabel\":\"Missing\",\"otherBucketLabel\":\"Other\"}},\"params\":{}}],\"metric\":{\"accessor\":1,\"aggType\":\"count\",\"format\":{\"id\":\"number\"},\"params\":{}}},\"isDonut\":true,\"labels\":{\"last_level\":true,\"show\":false,\"truncate\":100,\"values\":true},\"legendPosition\":\"right\",\"type\":\"pie\"}}"},"id":"7e284e40-86fd-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T12:14:47.031Z","version":"WzMxODEsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"language\":\"kuery\",\"query\":\"\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Resource Type Affected","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"title\":\"GuardDuty - Resource Type Affected\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"params\":{\"field\":\"@id\",\"customLabel\":\"Count\"},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"ResourceTypeAffected\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":10,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"ResourceTypeAffected\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\",\"dimensions\":{\"metrics\":[{\"accessor\":1,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"}],\"buckets\":[{\"accessor\":0,\"format\":{\"id\":\"terms\",\"params\":{\"id\":\"string\",\"otherBucketLabel\":\"Other\",\"missingBucketLabel\":\"Missing\"}},\"params\":{},\"aggType\":\"terms\"}]}}}"},"id":"e4ce6380-8786-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T12:12:24.250Z","version":"WzMxMjUsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"language\":\"kuery\",\"query\":\"\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Source Countries Geo Map","uiStateJSON":"{\"mapCenter\":[40.58058466412764,2.4609375000000004],\"mapZoom\":2}","version":1,"visState":"{\"type\":\"region_map\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"cardinality\",\"schema\":\"metric\",\"params\":{\"field\":\"@id\",\"customLabel\":\"Count\"}},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"segment\",\"params\":{\"field\":\"source.geo.country_iso_code\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"}}],\"params\":{\"addTooltip\":true,\"colorSchema\":\"Yellow to Red\",\"emsHotLink\":\"https://maps.elastic.co/v7.7?locale=en#file/world_countries\",\"isDisplayWarning\":true,\"legendPosition\":\"bottomright\",\"mapCenter\":[0,0],\"mapZoom\":2,\"outlineWeight\":1,\"selectedJoinField\":{\"description\":\"ISO 3166-1 alpha-2 Code\",\"name\":\"iso2\",\"type\":\"id\"},\"selectedLayer\":{\"attribution\":\"Made with NaturalEarth\",\"created_at\":\"2017-04-26T17:12:15.978370\",\"fields\":[{\"description\":\"ISO 3166-1 alpha-2 Code\",\"name\":\"iso2\",\"type\":\"id\"},{\"description\":\"ISO 3166-1 alpha-3 Code\",\"name\":\"iso3\",\"type\":\"id\"},{\"description\":\"Name\",\"name\":\"name\",\"type\":\"name\"}],\"format\":{\"type\":\"geojson\"},\"id\":\"world_countries\",\"isEMS\":true,\"layerId\":\"elastic_maps_service.World Countries\",\"name\":\"World Countries\",\"origin\":\"elastic_maps_service\"},\"showAllShapes\":true,\"wms\":{\"enabled\":false,\"options\":{\"format\":\"image/png\",\"transparent\":true},\"selectedTmsLayer\":{\"attribution\":\"Map data © OpenStreetMap contributors\",\"id\":\"road_map\",\"maxZoom\":10,\"minZoom\":0,\"origin\":\"elastic_maps_service\"}}},\"title\":\"GuardDuty - Source Countries Geo Map\"}"},"id":"a4134de0-870b-11ea-8ea1-d5ea957d0a7d","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T11:40:11.540Z","version":"WzI5MjUsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"language\":\"kuery\",\"query\":\"\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Type Table","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"title\":\"GuardDuty - Type Table\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"type\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":120,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\",\"dimensions\":{\"metrics\":[{\"accessor\":0,\"format\":{\"id\":\"number\"},\"params\":{},\"aggType\":\"count\"}],\"buckets\":[]}}}"},"id":"75b825f0-8090-11ea-945d-8d0868f4a377","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T12:12:44.098Z","version":"WzMxNDAsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - user.name","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"title\":\"GuardDuty - user.name\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"user.name\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"user.name\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\"}}"},"id":"631913c0-14d9-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T16:12:22.140Z","version":"WzM2MzEsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - user.id","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"title\":\"GuardDuty - user.id\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"user.id\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":true,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"user.id\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\"}}"},"id":"8e10d540-14d9-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T16:13:34.228Z","version":"WzM2MzksMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - source","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":2,\"direction\":\"desc\"}}}}","version":1,"visState":"{\"title\":\"GuardDuty - source\",\"type\":\"table\",\"aggs\":[{\"id\":\"4\",\"enabled\":true,\"type\":\"top_hits\",\"params\":{\"field\":\"source.geo.country_name\",\"aggregate\":\"concat\",\"size\":1,\"sortField\":\"@timestamp\",\"sortOrder\":\"desc\",\"customLabel\":\"Country\"},\"schema\":\"metric\"},{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"source.ip\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"source.ip\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\"}}"},"id":"b4aac570-14da-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T16:30:06.080Z","version":"WzM2NzgsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - destination","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":2,\"direction\":\"desc\"}}}}","version":1,"visState":"{\"title\":\"GuardDuty - destination\",\"type\":\"table\",\"aggs\":[{\"id\":\"4\",\"enabled\":true,\"type\":\"top_hits\",\"params\":{\"field\":\"destination.geo.country_name\",\"aggregate\":\"concat\",\"size\":1,\"sortField\":\"@timestamp\",\"sortOrder\":\"desc\",\"customLabel\":\"Country\"},\"schema\":\"metric\"},{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"destination.ip\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"destination.ip\"},\"schema\":\"bucket\"},{\"id\":\"3\",\"enabled\":false,\"type\":\"terms\",\"params\":{\"field\":\"destination.geo.country_name\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":5,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Country\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\"}}"},"id":"8cca87b0-14db-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T16:27:51.082Z","version":"WzM2NzIsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - EKS Cluster Name","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"title\":\"GuardDuty - EKS Cluster Name\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"resource.eksClusterDetails.name\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Cluster Name\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\"}}"},"id":"f84b1360-14d6-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T15:55:57.525Z","version":"WzM1NjAsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - Malware name","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"title\":\"GuardDuty - Malware name\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{\"customLabel\":\"\"},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"service.ebsVolumeScanDetails.scanDetections.threatDetectedByName.threatNames.name\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"Malware\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\"}}"},"id":"bff8fe00-14d1-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T15:38:38.444Z","version":"WzM1MjEsMV0="}
{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"GuardDuty - S3 Bucket Name","uiStateJSON":"{\"vis\":{\"params\":{\"sort\":{\"columnIndex\":null,\"direction\":null}}}}","version":1,"visState":"{\"title\":\"GuardDuty - S3 Bucket Name\",\"type\":\"table\",\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"params\":{},\"schema\":\"metric\"},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"params\":{\"field\":\"resource.s3BucketDetails.name\",\"orderBy\":\"1\",\"order\":\"desc\",\"size\":100,\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\",\"customLabel\":\"S3 Bucket Name\"},\"schema\":\"bucket\"}],\"params\":{\"perPage\":10,\"showPartialRows\":false,\"showMetricsAtAllLevels\":false,\"sort\":{\"columnIndex\":null,\"direction\":null},\"showTotal\":false,\"totalFunc\":\"sum\",\"percentageCol\":\"\"}}"},"id":"8601a370-14d4-11ed-8b90-dfaa63d2e2f6","migrationVersion":{"visualization":"7.10.0"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2022-08-05T15:38:22.578Z","version":"WzM1MTgsMV0="}
{"attributes":{"description":"","hits":0,"kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[{\"query\":{\"bool\":{\"should\":[{\"match_phrase\":{\"service.additionalInfo.sample\":true}},{\"match_phrase\":{\"service.additionalInfo.value\":\"{\\\"sample\\\":true}\"}}],\"minimum_should_match\":1}},\"meta\":{\"type\":\"custom\",\"disabled\":false,\"negate\":true,\"alias\":\"sample findings\",\"key\":\"query\",\"value\":\"{\\\"bool\\\":{\\\"should\\\":[{\\\"match_phrase\\\":{\\\"service.additionalInfo.sample\\\":true}},{\\\"match_phrase\\\":{\\\"service.additionalInfo.value\\\":\\\"{\\\\\\\"sample\\\\\\\":true}\\\"}}],\\\"minimum_should_match\\\":1}}\",\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.filter[0].meta.index\"},\"$state\":{\"store\":\"appState\"}}]}"},"optionsJSON":"{\"hidePanelTitles\":false,\"useMargins\":true}","panelsJSON":"[{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":0,\"w\":24,\"h\":6,\"i\":\"bfc49a59-28f5-49fe-8c7d-19550f626b68\"},\"panelIndex\":\"bfc49a59-28f5-49fe-8c7d-19550f626b68\",\"embeddableConfig\":{},\"panelRefName\":\"panel_0\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":24,\"y\":0,\"w\":24,\"h\":6,\"i\":\"72349c4c-1348-421e-b744-7088c627dac7\"},\"panelIndex\":\"72349c4c-1348-421e-b744-7088c627dac7\",\"embeddableConfig\":{},\"panelRefName\":\"panel_1\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":6,\"w\":48,\"h\":5,\"i\":\"e2b663b3-b29b-4abe-9580-d47ea2c6df1a\"},\"panelIndex\":\"e2b663b3-b29b-4abe-9580-d47ea2c6df1a\",\"embeddableConfig\":{},\"panelRefName\":\"panel_2\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":11,\"w\":24,\"h\":7,\"i\":\"a3603a30-d6d1-4edf-8b5b-5cd9d8df834f\"},\"panelIndex\":\"a3603a30-d6d1-4edf-8b5b-5cd9d8df834f\",\"embeddableConfig\":{},\"panelRefName\":\"panel_3\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":24,\"y\":11,\"w\":24,\"h\":7,\"i\":\"422633cb-18d7-4069-ad96-569a3ed08b9d\"},\"panelIndex\":\"422633cb-18d7-4069-ad96-569a3ed08b9d\",\"embeddableConfig\":{},\"panelRefName\":\"panel_4\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":18,\"w\":48,\"h\":11,\"i\":\"0240454d-0b65-4b5a-8969-f39f2d1cd992\"},\"panelIndex\":\"0240454d-0b65-4b5a-8969-f39f2d1cd992\",\"embeddableConfig\":{},\"panelRefName\":\"panel_5\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":29,\"w\":12,\"h\":6,\"i\":\"14ceb7b0-e5b4-453f-a729-b385d6787e25\"},\"panelIndex\":\"14ceb7b0-e5b4-453f-a729-b385d6787e25\",\"embeddableConfig\":{},\"panelRefName\":\"panel_6\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":12,\"y\":29,\"w\":12,\"h\":9,\"i\":\"6085c182-7373-4a31-99d6-cb505cee997e\"},\"panelIndex\":\"6085c182-7373-4a31-99d6-cb505cee997e\",\"embeddableConfig\":{},\"panelRefName\":\"panel_7\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":24,\"y\":29,\"w\":12,\"h\":9,\"i\":\"c3192b50-941c-46a0-95fb-94afa6803bba\"},\"panelIndex\":\"c3192b50-941c-46a0-95fb-94afa6803bba\",\"embeddableConfig\":{},\"panelRefName\":\"panel_8\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":36,\"y\":29,\"w\":12,\"h\":9,\"i\":\"d7e1cbbe-a77b-4ae9-874d-460acd205103\"},\"panelIndex\":\"d7e1cbbe-a77b-4ae9-874d-460acd205103\",\"embeddableConfig\":{},\"panelRefName\":\"panel_9\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":35,\"w\":12,\"h\":9,\"i\":\"d28f8af7-b841-4a64-a173-f2c255b76625\"},\"panelIndex\":\"d28f8af7-b841-4a64-a173-f2c255b76625\",\"embeddableConfig\":{},\"panelRefName\":\"panel_10\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":12,\"y\":38,\"w\":36,\"h\":19,\"i\":\"9d780455-4477-4e53-ba9b-61c1339575d1\"},\"panelIndex\":\"9d780455-4477-4e53-ba9b-61c1339575d1\",\"embeddableConfig\":{\"mapCenter\":null,\"mapZoom\":2},\"panelRefName\":\"panel_11\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":44,\"w\":12,\"h\":13,\"i\":\"1260a6d7-9e11-4d68-953c-af12180ccabc\"},\"panelIndex\":\"1260a6d7-9e11-4d68-953c-af12180ccabc\",\"embeddableConfig\":{},\"panelRefName\":\"panel_12\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":57,\"w\":12,\"h\":11,\"i\":\"b018c23f-3a6d-4bef-a373-8e58eef3f411\"},\"panelIndex\":\"b018c23f-3a6d-4bef-a373-8e58eef3f411\",\"embeddableConfig\":{},\"panelRefName\":\"panel_13\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":12,\"y\":57,\"w\":10,\"h\":11,\"i\":\"6fbd2cf6-8f9e-4a60-83f1-4fa6aa57deb5\"},\"panelIndex\":\"6fbd2cf6-8f9e-4a60-83f1-4fa6aa57deb5\",\"embeddableConfig\":{},\"panelRefName\":\"panel_14\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":22,\"y\":57,\"w\":13,\"h\":11,\"i\":\"70ba928d-e554-41c6-bb48-ec11bb43fa11\"},\"panelIndex\":\"70ba928d-e554-41c6-bb48-ec11bb43fa11\",\"embeddableConfig\":{},\"panelRefName\":\"panel_15\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":35,\"y\":57,\"w\":13,\"h\":11,\"i\":\"06f29236-add2-46f7-bd04-a2e2fac8875f\"},\"panelIndex\":\"06f29236-add2-46f7-bd04-a2e2fac8875f\",\"embeddableConfig\":{},\"panelRefName\":\"panel_16\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":68,\"w\":16,\"h\":13,\"i\":\"c98aaa2e-3c8e-4164-87d4-813cacb51512\"},\"panelIndex\":\"c98aaa2e-3c8e-4164-87d4-813cacb51512\",\"embeddableConfig\":{},\"panelRefName\":\"panel_17\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":16,\"y\":68,\"w\":16,\"h\":13,\"i\":\"4cf7c656-d1c1-4d22-9ef1-92c3884bac46\"},\"panelIndex\":\"4cf7c656-d1c1-4d22-9ef1-92c3884bac46\",\"embeddableConfig\":{},\"panelRefName\":\"panel_18\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":32,\"y\":68,\"w\":16,\"h\":13,\"i\":\"eb245f5a-cf68-4b55-afbf-3e2a22ed3fce\"},\"panelIndex\":\"eb245f5a-cf68-4b55-afbf-3e2a22ed3fce\",\"embeddableConfig\":{},\"panelRefName\":\"panel_19\"},{\"version\":\"1.3.2\",\"gridData\":{\"x\":0,\"y\":81,\"w\":48,\"h\":15,\"i\":\"f3c8854f-7bf7-4d0c-91ef-16f2b7b8ba48\"},\"panelIndex\":\"f3c8854f-7bf7-4d0c-91ef-16f2b7b8ba48\",\"embeddableConfig\":{},\"panelRefName\":\"panel_20\"}]","timeRestore":false,"title":"GuardDuty Summary","version":1},"id":"1100a270-8245-11ea-8dd2-6fda3f2e19c6","migrationVersion":{"dashboard":"7.9.3"},"references":[{"id":"8be467d0-7fc8-11ea-9ba8-7fa25bc74a6f","name":"kibanaSavedObjectMeta.searchSourceJSON.filter[0].meta.index","type":"index-pattern"},{"id":"094d3070-860a-11ea-8ea1-d5ea957d0a7d","name":"panel_0","type":"visualization"},{"id":"181166d0-860a-11ea-8ea1-d5ea957d0a7d","name":"panel_1","type":"visualization"},{"id":"72f65c40-14ce-11ed-8b90-dfaa63d2e2f6","name":"panel_2","type":"visualization"},{"id":"fef87760-86f4-11ea-8ea1-d5ea957d0a7d","name":"panel_3","type":"visualization"},{"id":"63f79b30-3bab-11eb-9df7-6b7b0da6e7ae","name":"panel_4","type":"visualization"},{"id":"401f74e0-8615-11ea-8ea1-d5ea957d0a7d","name":"panel_5","type":"visualization"},{"id":"bf3488c0-8786-11ea-8ea1-d5ea957d0a7d","name":"panel_6","type":"visualization"},{"id":"dc7b8cb0-86f7-11ea-8ea1-d5ea957d0a7d","name":"panel_7","type":"visualization"},{"id":"3f085520-86fd-11ea-8ea1-d5ea957d0a7d","name":"panel_8","type":"visualization"},{"id":"7e284e40-86fd-11ea-8ea1-d5ea957d0a7d","name":"panel_9","type":"visualization"},{"id":"e4ce6380-8786-11ea-8ea1-d5ea957d0a7d","name":"panel_10","type":"visualization"},{"id":"a4134de0-870b-11ea-8ea1-d5ea957d0a7d","name":"panel_11","type":"visualization"},{"id":"75b825f0-8090-11ea-945d-8d0868f4a377","name":"panel_12","type":"visualization"},{"id":"631913c0-14d9-11ed-8b90-dfaa63d2e2f6","name":"panel_13","type":"visualization"},{"id":"8e10d540-14d9-11ed-8b90-dfaa63d2e2f6","name":"panel_14","type":"visualization"},{"id":"b4aac570-14da-11ed-8b90-dfaa63d2e2f6","name":"panel_15","type":"visualization"},{"id":"8cca87b0-14db-11ed-8b90-dfaa63d2e2f6","name":"panel_16","type":"visualization"},{"id":"f84b1360-14d6-11ed-8b90-dfaa63d2e2f6","name":"panel_17","type":"visualization"},{"id":"bff8fe00-14d1-11ed-8b90-dfaa63d2e2f6","name":"panel_18","type":"visualization"},{"id":"8601a370-14d4-11ed-8b90-dfaa63d2e2f6","name":"panel_19","type":"visualization"},{"id":"476df210-8707-11ea-8ea1-d5ea957d0a7d","name":"panel_20","type":"search"}],"type":"dashboard","updated_at":"2022-08-05T22:09:35.683Z","version":"WzM5NzMsMV0="}
{"exportedCount":21,"missingRefCount":0,"missingReferences":[]}