KELA RaDark (v1.1.14)
This content pack enables you to fetch incidents and manage your RaDark monitor from Cortex XSOAR.
- Author
- KELA
- Support
- partner
- Categories
- Data Enrichment & Threat Intelligence
Incident fields (25)
- KELA RaDark Details
- KELA RaDark Incident URL
- KELA RaDark Monitor ID
- KELA RaDark Sub Type
- KELA RaDark Table Agressor
- KELA RaDark Table Botnets
- KELA RaDark Table Credit Cards
- KELA RaDark Table Credit Cards From Instant Messaging
- KELA RaDark Table Hacking Discussions
- KELA RaDark Table Information Disclosure
- KELA RaDark Table Leaked Credentials From Citadel
- KELA RaDark Table Leaked Credentials From Dump
- KELA RaDark Table Leaked Credentials From Hacking Discussions
- KELA RaDark Table Leaked Credentials From Instant Messaging
- KELA RaDark Table Russian Market
- KELA RaDark Table Sensitive Hosts
- KELA RaDark Table TwoEasy
- KELA RaDark Table Vulnerable Services Database
- KELA RaDark Table Vulnerable Services File Sharing
- KELA RaDark Table Vulnerable Services Insecure Network Services
- KELA RaDark Table Vulnerable Services Message Broker
- KELA RaDark Table Vulnerable Services Remote Control
- KELA RaDark Table Vulnerable Services SCADA
- KELA RaDark Table Vulnerable Technologies
- KELA RaDark Table Web Applications Vulnerabilities
Integrations (1)
- RaDark
Layouts (1)
- RaDark Layout
Scripts (1)
- MapRaDarkIncidentDetails
README
This content pack was created to allow KELA’s customers an integration with RaDark.
What does this pack do?
- Fetches incidents from RaDark into your Cortex XSOAR.
- Supports enrichment for existing data from RaDark.
- Manages incidents in RaDark from your Cortex XSOAR.
The content pack consists of several content items including mappers, classifiers, incident types, incident fields, and layouts which provide a playbook for RaDark items. These create a complete pack that supports full integration with KELA’s RaDark platform.