From 665e60df8e064db821928b60f27cb2d2686a3419 Mon Sep 17 00:00:00 2001 From: Bart <3075118+bartblaze@users.noreply.github.com> Date: Mon, 17 Nov 2025 08:13:13 +0100 Subject: [PATCH 1/3] Rename surihhost to surihost in search.html --- web/templates/analysis/search.html | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/web/templates/analysis/search.html b/web/templates/analysis/search.html index ecb221a4e4b..6ff51d45d3e 100644 --- a/web/templates/analysis/search.html +++ b/web/templates/analysis/search.html @@ -159,7 +159,7 @@ Search for Referrer in Suricata HTTP Logs - surihhost: + surihost: Search for Host in Suricata HTTP Logs From 0b68af1904f610ac0b2035aded671896ae856caa Mon Sep 17 00:00:00 2001 From: Bart <3075118+bartblaze@users.noreply.github.com> Date: Mon, 17 Nov 2025 08:15:07 +0100 Subject: [PATCH 2/3] Add 'surihost' key to Suricata alert mapping --- lib/cuckoo/common/web_utils.py | 1 + 1 file changed, 1 insertion(+) diff --git a/lib/cuckoo/common/web_utils.py b/lib/cuckoo/common/web_utils.py index 877878568f8..055dad77e3d 100644 --- a/lib/cuckoo/common/web_utils.py +++ b/lib/cuckoo/common/web_utils.py @@ -1221,6 +1221,7 @@ def validate_task_by_path(tid): "suriurl": "suricata.http.uri", "suriua": "suricata.http.ua", "surireferrer": "suricata.http.referrer", + "surihost": "suricata.http.host", "suritlssubject": "suricata.tls.subject", "suritlsissuerdn": "suricata.tls.issuer", "suritlsfingerprint": "suricata.tls.fingerprint", From 9ac36c8a61b83976533ba77ee3e224ded92efc31 Mon Sep 17 00:00:00 2001 From: Bart <3075118+bartblaze@users.noreply.github.com> Date: Mon, 17 Nov 2025 08:19:20 +0100 Subject: [PATCH 3/3] Update lib/cuckoo/common/web_utils.py Co-authored-by: gemini-code-assist[bot] <176961590+gemini-code-assist[bot]@users.noreply.github.com> --- lib/cuckoo/common/web_utils.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lib/cuckoo/common/web_utils.py b/lib/cuckoo/common/web_utils.py index 055dad77e3d..a8ab2cd0961 100644 --- a/lib/cuckoo/common/web_utils.py +++ b/lib/cuckoo/common/web_utils.py @@ -1221,7 +1221,7 @@ def validate_task_by_path(tid): "suriurl": "suricata.http.uri", "suriua": "suricata.http.ua", "surireferrer": "suricata.http.referrer", - "surihost": "suricata.http.host", + "surihost": "suricata.http.hostname", "suritlssubject": "suricata.tls.subject", "suritlsissuerdn": "suricata.tls.issuer", "suritlsfingerprint": "suricata.tls.fingerprint",