diff --git a/SecurityHubFindingsToSlack.json b/SecurityHubFindingsToSlack.json index 7efed0d..17d079a 100644 --- a/SecurityHubFindingsToSlack.json +++ b/SecurityHubFindingsToSlack.json @@ -71,7 +71,7 @@ "Name" : "SecurityHubFindingsToSlack", "Description": "CloudWatchEvents Rule to enable SecurityHub Findings in Slack ", "State": "ENABLED", - "EventPattern" : { + "EventPattern" : { "source": ["aws.securityhub"], "resources": [{ "Fn::Join" : [ ":", [ "arn", "aws", "securityhub", { "Ref" : "AWS::Region" }, { "Ref" : "AWS::AccountId" }, { "Fn::Join" : [ "/", [ "action", "custom", "SendToSlack"] ] }] ]}]}, @@ -159,7 +159,7 @@ "\n", "const attachment = [{\n", "\"fallback\": finding + ` - ${consoleUrl}/home?region=` + `${region}#/findings?search=id%3D${messageId}`,\n", - "\"pretext\": `*AWS SecurityHub finding in ${region} for Acct: ${account}*`,\n", + "\"pretext\": `*AWS Security Hub finding for account: ${account}*`,\n", "\"title\": `${finding}`,\n", "\"title_link\": `${consoleUrl}/home?region=${region}#/research`,\n", "\n",