Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Implement Palo Alto WildFire analyzer #1094

Merged

Conversation

joeslazaro-cdw
Copy link
Contributor

Resolves #910

Developed and tested with TheHive v4.1.20-1 and Cortex v3.1.4-1

Manual tests performed:

  • bad API host in configuration
  • bad API key in configuration
  • submitting a benign file
  • submitting a malware file
  • submitting a hash for a benign file
  • submitting a hash for a malware file
  • submitting a hash for an unknown file
  • submitting a benign URL
  • submitting a malware URL

@joeslazaro-cdw joeslazaro-cdw changed the title Implement Palo Alto Wildfire analyzer Implement Palo Alto WildFire analyzer May 27, 2022
I somehow triggered a case in TheHive where it was unable to find the report template. After I removed the spaces from the "name" property in the JSON file and reloaded the analyzer, the problem went away.
@nadouani nadouani added the category:new-analyzer New analyzer submitted label Jun 20, 2022
@jeromeleonard jeromeleonard added this to the 3.2.0 milestone Oct 10, 2022
@jeromeleonard jeromeleonard linked an issue Oct 10, 2022 that may be closed by this pull request
@jeromeleonard jeromeleonard merged commit d6c40f9 into TheHive-Project:develop Oct 10, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
category:new-analyzer New analyzer submitted
Projects
None yet
Development

Successfully merging this pull request may close these issues.

[FR] New Analyzer: Palo Alto Wildfire Sandbox
4 participants