SOCFortress CoPilot
main
Taylor committed about 3 years ago
add timestamp field to POST request (#63)
taylor_socfortress committed about 3 years ago
added placeholders for threatintel in swagger (#62)
taylor_socfortress committed about 3 years ago
POST for all alert related endpoints (#61)
taylor_socfortress committed about 3 years ago
POST instead of get and removed range on query (#60)
taylor_socfortress committed about 3 years ago
add velo artifact results to artifact table (#59)
taylor_socfortress committed about 3 years ago
query_builder for more modular wazuh-indexer searches (#58)
taylor_socfortress committed about 3 years ago
added timerange and size to /alerts route (#57)
taylor_socfortress committed about 3 years ago
Taylor committed about 3 years ago
reverted back to before last_24_hours
Taylor committed about 3 years ago
taylor_socfortress committed about 3 years ago
Taylor committed about 3 years ago
collect alerts by provided agent_name (#55)
taylor_socfortress committed about 3 years ago
skip process id if doesnt exist (#54)
taylor_socfortress committed about 3 years ago
list dfir-iris users and assign user to alert (#53)
taylor_socfortress committed about 3 years ago
return ask socfortress response
Taylor committed about 3 years ago
create iris alert more modular and docstrings (#52)
taylor_socfortress committed about 3 years ago
escalate alert to create alert in dfir-iris (#51)
taylor_socfortress committed about 3 years ago
Taylor committed about 3 years ago
logic to check if valid hash, domain, or ipv4 (#50)
taylor_socfortress committed about 3 years ago