Skip to main content

SplitCampaignContext

This Script is part of the Phishing Campaign Pack.#

Supported versions

Supported Cortex XSOAR versions: 5.5.0 and later.

Permissions#


This automation runs using the default Limited User role, unless you explicitly change the permissions. For more information, see the section about permissions here: https://docs-cortex.paloaltonetworks.com/r/Cortex-XSOAR/6.10/Cortex-XSOAR-Administrator-Guide/Automations

Script Data#


NameDescription
Script Typepython3
Tags
Cortex XSOAR Version5.5.0

Inputs#


Argument NameDescription
SimilarityThresholdToSplitByThe similarity value on which to split the context campaign data.
campaign_context_pathThe context full path of the EmailCampaign.

Outputs#


PathDescriptionType
EmailCampaign.incidents.idThe IDs of the incidents involved in the campaign.Unknown
EmailCampaign.incidents.similarityThe textual similarity of the related emails to the current incident.Unknown
EmailCampaign.incidents.emailfromThe senders of the emails involved in the campaign.Unknown
EmailCampaign.incidents.emailfromdomainThe domains of the email senders involved in the campaign.Unknown
EmailCampaign.incidents.recipientsA list of email addresses of recipients involved in the campaign. The list is comprised of the following fields, "Email To", "Email CC", "Email BCC".Unknown
EmailCampaign.incidents.recipientsdomainA list of the domains of the email addresses of recipients involved in the campaign. The list is comprised of the following fields, "Email To", "Email CC", "Email BCC".Unknown
EmailCampaign.LowerSimilarityIncidents.idThe IDs of the incidents involved in the campaign.Unknown
EmailCampaign.LowerSimilarityIncidents.similarityThe textual similarity of the related emails to the current incident.Unknown
EmailCampaign.LowerSimilarityIncidents.emailfromThe senders of the emails involved in the campaign.Unknown
EmailCampaign.LowerSimilarityIncidents.emailfromdomainThe domains of the email senders involved in the campaign.Unknown
EmailCampaign.LowerSimilarityIncidents.recipientsA list of email addresses of recipients involved in the campaign. The list is comprised of the following fields, "Email To", "Email CC", "Email BCC".Unknown
EmailCampaign.LowerSimilarityIncidents.recipientsdomainA list of the domains of the email addresses of recipients involved in the campaign. The list is comprised of the following fields, "Email To", "Email CC", "Email BCC".Unknown