Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Install Docker Images In XSOAR

Hi Everyone, I need to run phishing model and for that I need demisto/ml docker image. I intsalled machine learning content pack but still not get or see this docker image thats why I'm unable to run that model. I also ready info from here but still

...

Creating usecase with addEntitlement

Hello everyone, I'm try to make a usecase where it will be possible to send email to the XSOAR and instead of creating new incident the email content will be delivered to already open incident based on Incident id or UID with addEntitlement.

after cre

...

A.Levy by L0 Member
  • 1015 Views
  • 2 replies
  • 0 Likes

Resolved! Query on deleting incidents

Hi Team,

 

The standard customer has a query regarding deleting an incident on XSOAR. 1. In terms of performance usage when delete an incident or multiple selected incidents on the XSOAR console (Incidents page) and when delete an incident or multipl

...

Resolved! Rename table headers

Hi all 

 

I have a table of data in Cortex XSOAR (e.g., a list of dictionaries with results from a query), and I need to rename one of the column headers before processing it further in my playbook.

 

For example, I want to rename the column oldName

...

Extract data in value

To extract the specified highlighted dictionary value from the context data mentioned below, which script command and transformer should be utilized....?

 [{'type': 'events_fetched', 'value': '1'}, {'type': 'rules', 'value': '[{"id":112363,"name":112

...

  • 1290 Posts
  • 45 Subscriptions