Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

McAfee ATD Analyzer #25

Open
bullerdude opened this issue Mar 16, 2017 · 7 comments
Open

McAfee ATD Analyzer #25

bullerdude opened this issue Mar 16, 2017 · 7 comments
Labels
category:feature-request Issue is related to a feature request scope:analyzer Issue is analyzer related

Comments

@bullerdude
Copy link

Request Type

Analyzer Request

Work Environment

N/A

Problem Description

Create an analyzer that will submit files to a local McAfee ATD sandbox instance and retrieve the report and indicators that are generated

@nadouani nadouani added the scope:analyzer Issue is analyzer related label Mar 16, 2017
@saadkadhi
Copy link
Contributor

Hi @bullerdude. As for FireEye AX, we do not have access to an instance hence if you or someone would be willing to create an analyzer for it or give us access to one... you may contact us on our support email address if you'd like to discuss this. Thanks.

@bullerdude
Copy link
Author

Hi @saadkadhi, we are keen to develop this analyser. We will develop the code using a forked repository - https://github.com/UNIT777/Cortex-Analyzers.

@saadkadhi
Copy link
Contributor

Thanks @bullerdude. Once your analyzer is ready, please submit a pull request so we integrate it to the analyzer list. Also, let us know if we can be of any help for coding the analyzer.

Once it is dubbed ready for production, we will work on TheHive's short and long report templates. For that, we will need some sample outputs from the analyzer. Otherwise, if you feel confortable with AngularJS, please go ahead and provide short and long report templates so we can package them and share them with the community.

Thanks a heap for your help.

@saadkadhi
Copy link
Contributor

Hi @bullerdude. Any update on this front? Thanks a lot.

@saadkadhi saadkadhi added the category:feature-request Issue is related to a feature request label Oct 27, 2017
@Vince147
Copy link

Vince147 commented Nov 4, 2017

Hey @saadkadhi, i will check up on this. I was looking to build a tool to poke ATD and I discovered Cortex, which is what i wanted. I plan to do this this during this month. By that time, if @bullerduke have something, let us know.

@bullerdude
Copy link
Author

bullerdude commented Nov 4, 2017 via email

@Edward-merrett
Copy link

Hey,

Is there an update on this?

Would really love to integrate with ATD.

Ed

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
category:feature-request Issue is related to a feature request scope:analyzer Issue is analyzer related
Projects
None yet
Development

No branches or pull requests

5 participants