CimTrak - Example - Analyze Intrusion
CimTrak - System Integrity Assurance Pack.#
This Playbook is part of theSupported versions
Supported Cortex XSOAR versions: 6.0.0 and later.
#
DependenciesThis playbook uses the following sub-playbooks, integrations, and scripts.
#
Sub-playbooksThis playbook does not use any sub-playbooks.
#
Integrations- CimTrak
#
ScriptsThis playbook does not use any scripts.
#
Commands- compliance-scan-with-summary
- get-objects
- add-hash-allow-list
- add-hash-deny-list
- file-analysis-by-objectdetail-id
- promote-authoritative-baseline-files
#
Playbook InputsName | Description | Default Value | Required |
---|---|---|---|
Indicator Query | Indicators matching the indicator query will be used as playbook input | Optional | |
lObjectDetailID | ${incident.labels.objectDetailId} | Optional | |
lParentID | ${incident.labels.parentId} | Optional |
#
Playbook OutputsThere are no outputs for this playbook.