Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update Group-IB Threat Intelligence Pack #38416

Open
wants to merge 7 commits into
base: master
Choose a base branch
from

Conversation

content-bot
Copy link
Collaborator

Original External PR

external pull request

Contributor

@Kchekh

Contributing to Cortex XSOAR Content

Make sure to register your contribution by filling the contribution registration form

The Pull Request will be reviewed only after the contribution registration form is filled.

Status

  • In Progress
  • Ready
  • In Hold - (Reason for hold)

Related Issues

Description

Updating the integration content with new collections for indicator and incident collection, incident types, inidicators and their fields. Updated the code for collecting incidents and indicators. Changed docker version for this integration.

Must have

  • Tests
  • Documentation

@content-bot content-bot added Contribution Thank you! Contributions are always welcome! docs-approved Partner Contribution Form Filled Whether contribution form filled or not. Partner Support Level Indicates that the contribution is for Partner supported pack Internal PR Security Review Partner-Approved TIM Review Security Approved If a contribution has been approved for merge by the security team, then this will allow a merge labels Jan 30, 2025
Copy link

github-actions bot commented Jan 30, 2025

Coverage

Coverage Report
FileStmtsMissCoverMissing
Packs/GroupIB_ThreatIntelligenceAttribution/Integrations/GroupIBTIA
   GroupIBTIA.py49132434%1429–1434, 1438, 1440, 1449, 1451–1452, 1456–1459, 1461–1463, 1465, 1478–1480, 1492, 1495, 1506–1507, 1509, 1513, 1517–1519, 1526, 1532, 1534–1538, 1540, 1542, 1549–1550, 1555–1557, 1559–1560, 1562, 1565–1567, 1571, 1573–1583, 1585, 1589–1591, 1595–1596, 1600–1606, 1608, 1612–1617, 1621, 1626, 1630, 1635–1636, 1638–1639, 1646–1650, 1652, 1658–1665, 1667, 1669, 1676–1677, 1680–1681, 1688–1689, 1694–1695, 1703–1704, 1707–1708, 1715, 1726–1729, 1732–1734, 1738–1742, 1748, 1751–1752, 1756, 1759–1761, 1764, 1774, 1776, 1788–1790, 1793, 1798–1799, 1802, 1806–1807, 1809–1810, 1812–1814, 1817, 1821–1823, 1825, 1830–1836, 1838, 1840, 1843, 1848–1850, 1854–1862, 1865–1869, 1872–1880, 1884, 1887, 1890, 1893, 1895–1898, 1900, 1902, 1906, 1909, 1914, 1918, 1921, 1925, 1927, 1930–1933, 1941–1944, 1947, 1953, 1959–1961, 1964–1970, 1973, 1979–1981, 1983, 1986–1990, 1992, 1994–1995, 1999–2000, 2002–2003, 2006–2007, 2010, 2013–2014, 2017, 2019, 2024–2025, 2029, 2035, 2037, 2043, 2046, 2053–2058, 2061, 2074–2077, 2081–2082, 2111–2116, 2123–2126, 2129–2132, 2137, 2139, 2141–2143, 2145–2146, 2148, 2181, 2190–2192, 2198, 2210–2212, 2214, 2247, 2344, 2347–2348, 2352–2354, 2389–2390, 2394, 2402–2404, 2408–2409, 2412
Packs/GroupIB_ThreatIntelligenceAttribution/Integrations/GroupIB_TIA_Feed
   GroupIB_TIA_Feed.py2369061%886, 895, 905–908, 943–949, 957, 966, 970–971, 978, 980–983, 985, 1006, 1008–1010, 1012–1013, 1015, 1017, 1020–1021, 1023–1024, 1026–1028, 1035, 1037, 1039, 1041–1042, 1047–1050, 1093, 1096, 1101, 1104, 1169–1170, 1195–1196, 1201, 1203–1204, 1229, 1236, 1242–1246, 1248–1249, 1259, 1324, 1339, 1345–1346, 1348, 1350–1352, 1354–1355, 1360–1362, 1370, 1372–1373, 1375, 1378–1380, 1388, 1390
Packs/GroupIB_ThreatIntelligenceAttribution/Scripts/GIBIncidentUpdate
   GIBIncidentUpdate.py29872%14, 16, 18, 20, 36–39
Packs/GroupIB_ThreatIntelligenceAttribution/Scripts/GIBIncidentUpdateIncludingClosed
   GIBIncidentUpdateIncludingClosed.py29872%14, 16, 18, 20, 36–39
TOTAL78543045% 

Tests Skipped Failures Errors Time
21 0 💤 0 ❌ 0 🔥 5.001s ⏱️

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Contribution Form Filled Whether contribution form filled or not. Contribution Thank you! Contributions are always welcome! docs-approved Internal PR Partner Support Level Indicates that the contribution is for Partner supported pack Partner Partner-Approved Security Approved If a contribution has been approved for merge by the security team, then this will allow a merge Security Review TIM Review
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants