Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Investigations (playbook workflows) #680

Closed
1 task done
eshaan7 opened this issue Sep 1, 2021 · 1 comment · Fixed by #2197
Closed
1 task done

Investigations (playbook workflows) #680

eshaan7 opened this issue Sep 1, 2021 · 1 comment · Fixed by #2197
Labels
backend_core Issues regarding the Core part of the Project. They require maintainers intervention
Milestone

Comments

@eshaan7
Copy link
Member

eshaan7 commented Sep 1, 2021

updated: 15th March 2022

Idea / Motivation

a combination of two or more of the playbooks to create an "investigation" (this is an upper level). The idea could be to help people organize a workflow where playbooks are executed based on the result of the previous ones. For example: you could run the playbook "ip basic info": based on the data that is found, the "investigation" will suggest to run "hash analysis playbook" on an hash found in an analyzer executed by the previous playbook or "domain analysis playbook" if a suspicios domain is found. Then the user would choose the next playbook.

Originally posted by @mlodic in #628 (comment)

Pre-requisite(s)

Implementation Idea

We have no idea so please suggest! :)

@eshaan7 eshaan7 added this to the v4.0 milestone Sep 1, 2021
@mlodic mlodic mentioned this issue Jan 13, 2022
@eshaan7 eshaan7 removed the approved label Mar 15, 2022
@mlodic mlodic pinned this issue Jan 12, 2023
@mlodic mlodic added backend_core Issues regarding the Core part of the Project. They require maintainers intervention and removed question labels Aug 30, 2023
@mlodic mlodic linked a pull request Mar 22, 2024 that will close this issue
22 tasks
@mlodic
Copy link
Member

mlodic commented Mar 28, 2024

implemented first version in v6.0.0

@mlodic mlodic closed this as completed Mar 28, 2024
@mlodic mlodic unpinned this issue Apr 2, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
backend_core Issues regarding the Core part of the Project. They require maintainers intervention
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants