New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Core get-prevalence #19543
Core get-prevalence #19543
Conversation
'process': 'process_name', | ||
'cmd': 'process_command_line', | ||
'hash': 'sha256', | ||
'registry': 'key_name' |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
PEP8
'registry': 'key_name' | |
'registry': 'key_name', |
for i in range(len(keys)): | ||
args_list.append({'key_name': keys[i], 'value_name': values[i]}) |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This is python, not C.
for i in range(len(keys)): | |
args_list.append({'key_name': keys[i], 'value_name': values[i]}) | |
for key, value in zip(keys, values): | |
args_list.append({'key_name': key, 'value_name': value}) |
type: Boolean | ||
- contextPath: Core.AnalyticsPrevalence.Hash.data.global_prevalence | ||
description: The global prevalence of the hash. | ||
type: Unknown |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
update all output typing (unless they are not simple types)
predefined: | ||
- '' |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
predefined: | |
- '' |
description: Get the prevalence of an ip, identified by ip_address. | ||
execution: false | ||
hidden: false | ||
name: core-get-IP-analytics-prevalence |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
commands should be all lower-case.
name: core-get-IP-analytics-prevalence | |
name: core-get-ip-analytics-prevalence |
Packs/Core/ReleaseNotes/1_3_0.md
Outdated
- ***core-get-domain-analytics-prevalence*** | ||
- ***core-get-process-analytics-prevalence*** | ||
- ***core-get-registry-analytics-prevalence*** | ||
- ***core-get-cmd-analytics-prevalence'*** |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
- ***core-get-cmd-analytics-prevalence'*** | |
- ***core-get-cmd-analytics-prevalence*** |
Link to the unit tests coverage report: |
The build failed on irrelevant tests in XSIAM |
* added new command * changes after access to API. * some changes * added prevalence command * more fixes * update RN * moved commands to IR instead of IOC * Added UT * Added UT * Added UT * validation and lint fixes * fix yml file * review fixes * validation err fix
Status
Related Issues
https://jira-hq.paloaltonetworks.local/browse/CIAC-470
https://github.com/demisto/etc/issues/48080
Minimum version of Cortex XSOAR
Does it break backward compatibility?
Must have