Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

ZIP a file XSOAR

Hi Team,

 

I'm trying to zip a file using ZipFile Automation as a task in the playbook and after it has been zipped use the ZIP file EntryID to be sent attached in an email, I'm getting this error:

 

'Unable to read file with id b4841215-d627-4c36-9c

...

XSOAR - Manual Review Indicators

Hi, 
I have created a playbook that extracts IOC from a csv in a mail.
I want to ask the analyst if they want to manually review or auto block the IOCs.
If the analyst marks Manual review I want it to loop over every IOC and the analyst should mark to b

...

Bar_Magnezi_0-1721193781083.png

Resolved! Crowdstrike API upgradation

I recently got news that crowdstrike is going to upgrade api version so what needs to do at xsoar side in terms of integration. According to my info we just need to update the pack or what else

 

Cortex XSOAR 

Syedhkt by L2 Linker
  • 408 Views
  • 1 replies
  • 0 Likes

Cortex XSOAR DNS resolving issue

Hi all, 

I am trying to integrate Cortex XDR with Cortex XSOAR. I have configured api key and other settings . But sometimes this integration works, sometimes do not,  because of DNS resolving issue. 


I dont think it is our DNS servers problem, becaus

...

Create a PDF File

Hi everyone

 

What is the best way to create a PDF within a Playboook? What are you all using?

Data format doesn't matter but some customisation about the pdf format would be nice.

 

BR

Michael

micomi by L2 Linker
  • 506 Views
  • 4 replies
  • 1 Likes

Recurring automation on active tickets

I'm trying to run an automation every hour which checks for Warroom entries and executes certain code in the automation. This automation should only run and check on the active tickets. The automation itself works, but I still need to execute it with

...

G.Buis by L1 Bithead
  • 409 Views
  • 4 replies
  • 0 Likes

CrowdStrike Next-Gen SIEM

Hi all,

 

How can i fetch the alert generated by CrowdStrike Next-Gen SIEM to SOAR? Here, are the alerts generated by queries created or like Email, Cloud category.

 

#XSOAR #CrowdStrike #Next-GenSIEM

  • 1022 Posts
  • 32 Subscriptions