RaDark
This integration enables you to fetch incidents and manage your RaDark monitor from Cortex XSOAR.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- KELARaDark
Configuration parameters
- api_key — API Key (required)
- first_fetch — First time fetching
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- monitor_id — Monitor ID (required)
- isFetch — Fetch incidents
- incidentFetchInterval — Incidents Fetch Interval
- incidentType — Incident type
- max_fetch — Max incidents to fetch each fetching
- incident_types — Incident types to fetch (required)
Commands (4)
- radark-email-enrich — Search a specific email address to get all exposed leaked credentials collected by RaDark.
- radark-incident-get-items — Fetch all items for an incident by the given incident ID.
- radark-item-handle — Mark item as handled on RaDark.
- radark-item-purchase — Request to purchase an item offered for sale on an automated store.