Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Error handling

 
Hi all, with this type of setting (see the img), if in the next task I check $ {lastCompletedTaskEntries} to verify if the previous task is in error, the result is positive even if the second retry task went well. How can I get ar
...

immagine.png

Resolved! Export playbooks, alerts list

Hi All,

 

I am new to xSOAR and wanted to know if  there is a way to export the list of playbooks enabled in my environment

This is to check what playbooks we are using Vs what is available in marketplace

 

Thank you

aparna

aparnaas by L1 Bithead
  • 1040 Views
  • 1 replies
  • 0 Likes

Resolved! Add a comment on an indicator from playbook

Hello,

 

In many indicators' layout there is a comment section where users can add text comment.

 

Is there a way to automatically add comment from a playbook?

 

Looking at setIndicator, I didn't find the right field associated to the comment section

...

customize widget from script

Hi Team,

 

I have developed automation to get all the similar incident names with dictionary return results that have ID and incident name.

 

Once I call the script from the widget, pie, table, or any of them, I get the following error; anyone can he

...

bzahran_0-1669213017794.png
bzahran by L0 Member
  • 1065 Views
  • 2 replies
  • 0 Likes

Extract Domains from Phishing Attached Email

Hi Team,

 

I hope all are doing well; how can I extract the domains from the phishing attached files?

 

I extracted the email using " ParseEmailFilesV2 "; exported all the email parameters such as HTML and others successfully; however, once I tried t

...

bzahran by L0 Member
  • 1597 Views
  • 3 replies
  • 0 Likes

High number of process in XSOAR Engine Server

Hi,

  1. What are the engine processes corresponding to engine shell installation on RHEL with Podman?

  2. Are the number of processes on the engine server expected to rise due to each integration made on it?

  3. What are the considerations for keeping the eng

...

DP696 by L2 Linker
  • 883 Views
  • 1 replies
  • 0 Likes

Resolved! XSOAR Sessions and Submissions option

Hi,

 

I came across this documentation regarding XSOAR

https://docs.paloaltonetworks.com/cortex/cortex-xsoar/6-9/cortex-xsoar-threat-intel-management-guide/unit42-intel/unit42-sessions-and-submissions

 

The Sessions & Submissions tab enables you to u
...

  • 940 Posts
  • 30 Subscriptions