forked from demisto/content
-
Notifications
You must be signed in to change notification settings - Fork 2
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge branch 'contrib/SEKOIA-IO_Add/SekoiaXDR' into Add/SekoiaXDR
- Loading branch information
Showing
13 changed files
with
156 additions
and
15 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,7 @@ | ||
|
||
#### Integrations | ||
|
||
##### Abnormal Security Event Collector | ||
|
||
- Changed the default value for *First fetch time interval* parameter to 1 minute and hid it. | ||
- Updated the Docker image to: *demisto/python3:3.10.14.92207*. |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -2,7 +2,7 @@ | |
"name": "Abnormal Security", | ||
"description": "Abnormal Security detects and protects against the whole spectrum of email attacks", | ||
"support": "partner", | ||
"currentVersion": "2.2.8", | ||
"currentVersion": "2.2.9", | ||
"author": "Abnormal Security", | ||
"url": "", | ||
"email": "[email protected]", | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,7 @@ | ||
|
||
#### Integrations | ||
|
||
##### DomainTools Iris | ||
|
||
- Added support for credentials type. | ||
- Updated the Docker image to: *demisto/vendors-sdk:1.0.0.92984*. |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -2,7 +2,7 @@ | |
"name": "DomainTools Iris Investigate", | ||
"description": "Facilitates automation of key infrastructure characterization and hunting portions of the incident response process. Organizations will have access to essential domain profile, web crawl, SSL, and infrastructure data from within Cortex XSOAR. Requires a DomainTools Iris Investigate API key.", | ||
"support": "partner", | ||
"currentVersion": "2.0.1", | ||
"currentVersion": "2.0.2", | ||
"author": "DomainTools", | ||
"url": "https://www.domaintools.com/support/", | ||
"email": "[email protected]", | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,21 @@ | ||
{ | ||
"description": "Approved categories for use in pack_metadata.json and integration yml. To modify this file you will need a CODEOWNER to approve. Please make sure to trigger the sdk build in case you edit this list.", | ||
"approved_list": [ | ||
"Analytics & SIEM", | ||
"Case Management", | ||
"Cloud Services", | ||
"Data Enrichment & Threat Intelligence", | ||
"Database", | ||
"Deception & Breach Simulation", | ||
"Endpoint", | ||
"Forensics & Malware Analysis", | ||
"IT Services", | ||
"Identity and Access Management", | ||
"Messaging and Conferencing", | ||
"Network Security", | ||
"Utilities", | ||
"Vulnerability Management", | ||
"Authentication & Identity Management", | ||
"Email" | ||
] | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,54 @@ | ||
{ | ||
"description": "Approved tags for use in pack_metadata.json. To modify this file you will need a CODEOWNER to approve.", | ||
"approved_list": { | ||
"common": [ | ||
"Alerts", | ||
"Attack", | ||
"Breach", | ||
"Breach Simulation", | ||
"Core", | ||
"Compliance", | ||
"Dark Web", | ||
"Email", | ||
"Forensics", | ||
"GDPR", | ||
"Getting Started", | ||
"HIPAA", | ||
"IAM", | ||
"Incident Handling", | ||
"Incident Response", | ||
"IoT", | ||
"IT", | ||
"Malware", | ||
"Network", | ||
"PII", | ||
"Palo Alto Networks Products", | ||
"Pcap", | ||
"Scam", | ||
"Security", | ||
"Security Analytics", | ||
"Private Offer", | ||
"Simulation", | ||
"TIM", | ||
"Threat Intelligence", | ||
"Threat Intelligence Management", | ||
"VPN", | ||
"MITRE ATT&CK", | ||
"Unit 42", | ||
"Use Case", | ||
"New", | ||
"Trending", | ||
"Relationship", | ||
"Elasticsearch", | ||
"Free Feed", | ||
"Plug & Fetch", | ||
"Generic Feed", | ||
"Allow List", | ||
"Plug & Enrich", | ||
"Free Enricher" | ||
], | ||
"xsoar": [], | ||
"marketplacev2": ["Data Source"], | ||
"xpanse": ["Data Source"] | ||
} | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,21 @@ | ||
{ | ||
"description": "Approved usecases for use in pack_metadata.json. To modify this file you will need a CODEOWNER to approve.", | ||
"approved_list": [ | ||
"Asset Management", | ||
"Breach Notification", | ||
"Breach and Attack Simulation", | ||
"Case Management", | ||
"Compliance", | ||
"Health Check", | ||
"Hunting", | ||
"Identity and Access Management", | ||
"Incident Response", | ||
"Malware", | ||
"Network Security", | ||
"Phishing", | ||
"Ransomware", | ||
"SANS", | ||
"Threat Intelligence Management", | ||
"Vulnerability Management" | ||
] | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters