Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Cloud Token Theft - XSOAR Version #27808

Merged
merged 44 commits into from Jul 6, 2023
Merged

Conversation

melamedbn
Copy link
Contributor

Status

  • In Progress
  • Ready
  • In Hold - (Reason for hold)

Description

Modified playbooks dedicated for XSOAR
Fixes to the TIM - Indicator Relationships Analysis
Added fields to CommonTypes

Minimum version of Cortex XSOAR

  • 6.0.0
  • 6.1.0
  • 6.2.0
  • 6.5.0
  • 6.8.0

Does it break backward compatibility?

  • Yes
    • Further details:
  • No

Must have

  • Tests
  • Documentation

@ShirleyDenkberg
Copy link
Contributor

@altmannyarden Doc review completed.

@ShahafBenYakir ShahafBenYakir merged commit 76c84ca into master Jul 6, 2023
13 of 16 checks passed
@ShahafBenYakir ShahafBenYakir deleted the CloudTokenTheft4XSOAR branch July 6, 2023 08:51
xsoar-bot pushed a commit to xsoar-contrib/content that referenced this pull request Jul 26, 2023
* new content

* update RN

* Added mapping for RelatedCampaign and RelatedAttackPatterns

* Added mapping for RelatedCampaign and RelatedAttackPatterns

* update RN

* update RN

* fixes to layout file

* fixes to layout file

* change field name

* update docs and layout

* fixes the incident field name

* fixes the incident field name

* pack readme update

* Apply suggestions from code review

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/CloudIncidentResponse/Playbooks/playbook-Cortex_XDR_-_XCloud_Token_Theft_Response.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Apply suggestions from code review

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* fixes

* fixes

* playbook fixes

* playbook fixes

* playbook fixes

* update RN

* validation check

* format incident field Referenced Resource ID

* format incident field Cloud Operation Type

* update RN

* fix fields

* fix fields

* fix fields

* fix fields - added marketplaces

* update RN

* fix typo

* fix typo and update RN

* removed unused fields from the layout

* removed unused fields from the layout

---------

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
xsoar-bot pushed a commit to xsoar-contrib/content that referenced this pull request Aug 2, 2023
* new content

* update RN

* Added mapping for RelatedCampaign and RelatedAttackPatterns

* Added mapping for RelatedCampaign and RelatedAttackPatterns

* update RN

* update RN

* fixes to layout file

* fixes to layout file

* change field name

* update docs and layout

* fixes the incident field name

* fixes the incident field name

* pack readme update

* Apply suggestions from code review

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/CloudIncidentResponse/Playbooks/playbook-Cortex_XDR_-_XCloud_Token_Theft_Response.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Apply suggestions from code review

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* fixes

* fixes

* playbook fixes

* playbook fixes

* playbook fixes

* update RN

* validation check

* format incident field Referenced Resource ID

* format incident field Cloud Operation Type

* update RN

* fix fields

* fix fields

* fix fields

* fix fields - added marketplaces

* update RN

* fix typo

* fix typo and update RN

* removed unused fields from the layout

* removed unused fields from the layout

---------

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
xsoar-bot pushed a commit to xsoar-contrib/content that referenced this pull request Aug 2, 2023
* new content

* update RN

* Added mapping for RelatedCampaign and RelatedAttackPatterns

* Added mapping for RelatedCampaign and RelatedAttackPatterns

* update RN

* update RN

* fixes to layout file

* fixes to layout file

* change field name

* update docs and layout

* fixes the incident field name

* fixes the incident field name

* pack readme update

* Apply suggestions from code review

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Update Packs/CloudIncidentResponse/Playbooks/playbook-Cortex_XDR_-_XCloud_Token_Theft_Response.yml

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* Apply suggestions from code review

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>

* fixes

* fixes

* playbook fixes

* playbook fixes

* playbook fixes

* update RN

* validation check

* format incident field Referenced Resource ID

* format incident field Cloud Operation Type

* update RN

* fix fields

* fix fields

* fix fields

* fix fields - added marketplaces

* update RN

* fix typo

* fix typo and update RN

* removed unused fields from the layout

* removed unused fields from the layout

---------

Co-authored-by: ShirleyDenkberg <62508050+ShirleyDenkberg@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
5 participants