Cortex ASM - Extract IP Indicator
#
This Playbook is part of the Cortex Attack Surface Management Pack.Deprecated
No available replacement.
#
Playbook to Extract IP indicators from ASM alerts and associate indicators with the alertThis playbook aims to extract the related IP address from ASM alert data and associated the newly created indicator with the alert.
#
DependenciesThis playbook uses the following sub-playbooks, integrations, and scripts.
#
Sub-playbooksThere are no sub-playbooks for this playbook.
#
IntegrationsThere are no integrations for this playbook.
#
ScriptsThere are no scripts for this playbook.
#
Commands- extractIndicators
- createNewIndicator
- associateIndicatorToAlert
#
Playbook InputsName | Description | Default Value | Required |
---|---|---|---|
AlertName | The formatted name of the alert | Optional |
#
Playbook OutputsName | Description |
---|---|
ExtractedIndicators | outputs.extractindicators |