mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
30 lines
786 B
YAML
30 lines
786 B
YAML
name: Dynamic Analysis Dispatch
|
|
id: a15da934-1f59-4672-b98c-ec1bbfd80885
|
|
version: 2
|
|
creation_date: '2023-03-30'
|
|
modification_date: '2026-05-19'
|
|
author: Teoderick Contreras, Splunk
|
|
type: Investigation
|
|
description: Automatically dispatches input playbooks with the 'sandbox' tag. This will produce a merge report and indicator tag for each inputs.
|
|
playbook: Dynamic_Analysis_Dispatch
|
|
how_to_implement: This automatic playbook requires "sandbox" tag be present on each input playbook you want to launch.
|
|
references: []
|
|
app_list: []
|
|
platform_tags:
|
|
- url
|
|
- domain
|
|
- sandbox
|
|
- ip
|
|
- vault_id
|
|
playbook_type: Automation
|
|
vpe_type: Modern
|
|
playbook_fields: []
|
|
product:
|
|
- Splunk SOAR
|
|
use_cases:
|
|
- Enrichment
|
|
- Phishing
|
|
- Endpoint
|
|
defend_technique_id:
|
|
- D3-DA
|