Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Run Cortex analyzer through api #40

Closed
alexgoedeke opened this issue Sep 20, 2017 · 5 comments
Closed

Run Cortex analyzer through api #40

alexgoedeke opened this issue Sep 20, 2017 · 5 comments
Assignees
Milestone

Comments

@alexgoedeke
Copy link

Request Type

Question/Feature Request

Problem Description

Is it possible to run an Cortex analyzer with an given observableID from a python script?

@nadouani
Copy link
Contributor

Hello @alexgoedeke

What's the idea? do you want just to run analyzers on a given observable and just get it's report or, you want to have the report on TheHive?

Cortex has it own python library which is Cortex4Py but this will not add any data to TheHive.

That said, we can add the capability to run a job on a given observable, from TheHive.

@alexgoedeke
Copy link
Author

@nadouani Yes I need the results in TheHive

@nadouani nadouani added this to the 1.4.0 milestone Sep 20, 2017
@nadouani
Copy link
Contributor

Se we have to add some methods to make that possible. Good feature request.

@nadouani
Copy link
Contributor

Here is doc for how TheHive launches Cortex analyzers: https://github.com/CERT-BDF/TheHiveDocs/tree/master/api/connectors/cortex

Thanks to @srilumpa

@alexgoedeke
Copy link
Author

@nadouani I have added the functionality to the API

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants