Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Resolved! Custom Data Storage

Hello,

 

Is there a way to store custom Data elsewhere than in incidents ? I suceeded in "Lists" but it appears than maximum list size is 209715 characters ==> https://docs-cortex.paloaltonetworks.com/r/Cortex-XSOAR/6.9/Cortex-XSOAR-Administrator-Gui

...

Resolved! Widget expected data Format

Hello,

 

I was not able to find in XSoar Documentation, the "formats" which are expected for all Widget Types :
- Data Table
- Graph
- Text Input
- Select
- List
- Map
- Date Picker
- File Picker

 

Do you know them ?

 

Thanks in advance for your reply and be

...

Moving a file

Hello,

 

Anyone know how I can run an automation in the playground, to save a string of text into a file locally on the system?

 

kkaiquan by L0 Member
  • 512 Views
  • 1 replies
  • 0 Likes

Resolved! Playbooks seems never end

Hello everyone

 

Recently I am developing playbooks for the management of possible security incidents.

 

Something that catches my attention is that, in case of errors throughout the playbook, I have established that the case is closed through the "C

...

War Room Table to Layout view

Hi, I am building the playbook, where I have one task that is searching for incidents using the query as in:
!SearchIncidentsV2 query="type:FireEye NX Alert and fireeyenxalertvictimip:11.11.11.11 or 134.122.90.162"

With a help of community members I wa

...

MMagdic_0-1689838826342.png
MMagdic by L2 Linker
  • 644 Views
  • 1 replies
  • 0 Likes

splunk notable hash

Hello, i get some problems during setup my splunk to xsoar:

 

The problem i get is xsoar take the notable event hash filed like it was a file hash and i didn't want it in my playbook.

Some of you has already face this issue ? do you have resolved it

...

  • 943 Posts
  • 30 Subscriptions