Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.
About Cortex XSOAR Discussions
Cortex XSOAR enables SOC analysts to manage alerts across all sources, standardize processes with playbooks, take action on threat intel, and automate response for any security use case.

Discussions

Help with Cortex XSOAR API

Hi everyone,

 

I'm currently working with XSOAR API, and I'd like to get some help in this way.

 

I gotta gather all the data from a specific dashboard. I know that there is one API endpoint that I can use for it but, the documentation does not expla

...

SergioPalacios_0-1724228708500.png

JavaScript vs Python scripts

Hi everyone,

 

Lately, I was wondering about Python and JavaScript performance in terms of computational speed and XSOAR resource use. I'd like to work as efficient as possible and that's the reason I'd like to ask for the XSOAR community thoughts.

 

...

Cortex XSOAR DNS resolving issue

Hi all, 

I am trying to integrate Cortex XDR with Cortex XSOAR. I have configured api key and other settings . But sometimes this integration works, sometimes do not,  because of DNS resolving issue. 


I dont think it is our DNS servers problem, becaus

...

MT out of sync issue

Hi Team,

One of my customer accounts in multi-tenant setup appear to be out-of-sync despite successfully syncing. I have synced accounts from the Main Account UI using both the 'Sync all accounts' and 'Sync' individually selected accounts . The cont

...

CrowdStrike Next-Gen SIEM

Hi all,

 

How can i fetch the alert generated by CrowdStrike Next-Gen SIEM to SOAR? Here, are the alerts generated by queries created or like Email, Cloud category.

 

#XSOAR #CrowdStrike #Next-GenSIEM

XSOAR - Manual Review Indicators

Hi, 
I have created a playbook that extracts IOC from a csv in a mail.
I want to ask the analyst if they want to manually review or auto block the IOCs.
If the analyst marks Manual review I want it to loop over every IOC and the analyst should mark to b

...

Bar_Magnezi_0-1721193781083.png

How does EmailAskUser flow work?

I configured my playbook to execute EmailAskUser script but I don't know what is happening in the background causing the completion of the next task. Can somebody explain this behavior to me? The script isn't well documented and I was wondering the d

...

lordstark_0-1723561389650.png

Get Incident List from Microsoft 365 Defender

Hi Team,

I want to get the events between the dates I give from Microsoft 356 Defender. In the ‘microsoft-365-defender-incidents-list’ command, the limit is set to maximum 100. What should I do to make the limit unlimited?


The command:

test_data ={’...

  • 1104 Posts
  • 34 Subscriptions