ExtraHop - Default
Default playbook to run for all ExtraHop Detection incidents. This playbook handles ticket tracking as well as triggering specific playbooks based on the name of the ExtraHop Detection.
- Pack
- ExtraHop
- Tasks
- 9
Outputs
- CVE — Details on the CVE.
- ExtraHop.Device — Details on the host and any peer devices found.
- ExtraHop.ActivityMap — The link to a visual activity map in ExtraHop.
- ExtraHop.Record.Source — Associated transaction records from ExtraHop.