Classifies AWS IOCs.
AWS Feed
- Details
- Content
- Dependencies
- Version History
Indicators feed from AWS
Name | Description |
---|---|
AWS Feed - Classifier | |
AWS Feed - Incoming Mapper | Maps incoming AWS indicator fields. |
Name | Description |
---|---|
AWS Feed | Use the AWS feed integration to fetch indicators from the feed. |
Name | Description |
---|---|
TIM - Process AWS indicators | This playbook handles the tagging of AWS indicators. Specify the tag to apply to these indicators in the playbook inputs. An example tag will be approved_allow. If no inputs are specified, the indicators will be tagged for manual review. The user can specify whether a manual review incident is required. |
Name | Description |
---|---|
AWS Feed - Classifier | Classifies AWS IOCs. |
AWS Feed - Incoming Mapper | Maps incoming AWS indicator fields. |
Name | Description |
---|---|
AWS Feed | Use the AWS feed integration to fetch indicators from the feed. |
Name | Description |
---|---|
TIM - Process AWS indicators | This playbook handles the tagging of AWS indicators. Specify the tag to apply to these indicators in the playbook inputs. An example tag will be approved_allow. If no inputs are specified, the indicators will be tagged for manual review. The user can specify whether a manual review alert is required. |
Pack Name | Pack By |
---|---|
Base | By: Cortex XSOAR |
Pack Name | Pack By |
---|---|
Common Types | By: Cortex XSOAR |
Pack Name | Pack By |
---|---|
Base | By: Cortex XSOAR |
Integrations
AWS Feed
Fixed an issue where indicators were expiring due to prolonged periods of inactivity in the data source by implementing a solution that enforces a bi-daily update for existing indicators, even if the corresponding resource hasn't been updated.
- 31123
Download
Integrations
AWS Feed
- Updated the Docker image to: demisto/py3-tools:1.0.0.63020.
- Added support for fetching IPv6 indicators from the feed.
- Enhanced the JSONFeedApiModule to support fetching multiple indicator types from the feed.
- Updated the default value of the services integration parameter to All.
- 27141
Download
Integrations
AWS Feed
- Reverted changes made in 1.1.11.
- Fixed an issue where adding the headers If-None-Match and If-Modified-Since to requests was not compatible with Cortex XSOAR with a version below 6.5.0.
Integrations
AWS Feed
- Changed the feed to be Incremental Feed.
Integrations
AWS Feed
- Fixed an issue where configuring the integration to fetch multiple Services would only fetch the first service.
Integrations
AWS Feed
Enhanced noUpdate flagging when fetching indicators using ETAG and Last-Modified headers.
Integrations
AWS Feed
- Updated the Docker image to: demisto/jmespath:1.0.0.23980.
Integrations
AWS Feed
Fixed an issue where fetching indicators in Cortex XSOAR with a version below 6.5.0 would fail.
Integrations
AWS Feed
Read ETAG and Last-Modified headers from feed response to support noUpdate signaling when creating indicators.
Integrations
AWS Feed
- Added more regions to the Regions parameter.
Integrations
AWS Feed
- Internal infrastructure improvements.
Integrations
AWS Feed
- Internal code improvements.
Integrations
AWS Feed
- Internal code improvements.
- Updated Docker image to demisto/jmespath:1.0.0.19143.
Integrations
AWS Feed
- Internal code improvements.
Integrations
- ##### AWS Feed
- Internal code improvements.
Classifiers
AWS Feed - Classifier
- Fixed an issue where the classifier's id was incorrect.
AWS Feed - Incoming Mapper
- Fixed an issue where the mapper's id was incorrect.
Integration
AWS Feed
- Upgraded the Docker image to demisto/jmespath:1.0.0.12410.
PUBLISHER
PLATFORMS
INFO
Certification | Certified | Read more |
Supported By | Cortex | |
Created | July 26, 2020 | |
Last Release | November 10, 2024 |