Azure-Sentinel
Azure-Sentinel copied to clipboard
Added new Playbooks, Fixed issue in VmRecovery playbook and updated version of cryptography to fix vulnerability in python packages
Change(s):
- Added 3 new Playbooks(RubrikFileObjectContextAnalysis, RubrikUserAccessAnalysis, RubrikUserRiskPolicyDetails) for FileObject and User
- Fixed clusterLocation issue of Collect_IOC_Scan_Data adaptive card in RubrikRansomwareDiscoveryAndVmRecovery playbook
- Updated Anomaly Analysis playboook and added new playbook(RubrikAnomalyGenerateDownloadableLink) to enrich anomaly incident with Suspicious filePath(s) details and it's downloadable link.
Reason for Change(s):
- New Feature requirement of new playbooks
- Fix Issue in popuating adaptive card
Version Updated:
- Updated to 3.2.0
Testing Completed:
- Yes
Checked that the validations are passing and have addressed any issues that are present:
- Yes
Hello @niralishah-crest, Please try to resolve arm ttk failures.
Hi @niralishah-crest, Any updates on above
@v-prasadboke We are working on it. Will update the PR as soon as possible.
Thanks for resolving the validation failure. continuing to investigate the PR
Thanks for resolving the validation failure. continuing to investigate the PR
Sorry for the misunderstanding @niralishah-crest, There are still arm-ttk failures. Please try to resolve them
@v-prasadboke We have tried from our side to fix the arm-ttk validation error. But we are unable to find the cause of it. Can you please help us out on that?
Hello @niralishah-crest, I'll try from my side. I'll get back to you by 14 March, 2024
Hello @niralishah-crest, Unable to pull latest changes. Can you provide write access to the branch.
Hello @niralishah-crest, Unable to pull latest changes. Can you provide write access to the branch.
@v-prasadboke I have already added you as a collaborator to my forked repository.
Hello @niralishah-crest, I'll take a look at it.
Hello @niralishah-crest, We are still trying to figure out the issue. Will get back to you by 28 March, 2024.
Hello @niralishah-crest, Im unable to pull latest changes can you please update your branch from master.
Hello @niralishah-crest, Im unable to pull latest changes can you please update your branch from master.
@v-prasadboke Merged master branch in this branch
Hello @niralishah-crest, We are still trying to figure out the issue. Will get back to you by 28 March, 2024.
@v-prasadboke Any updates on the PR?
Hi @niralishah-crest, Sorry for the inconvenience. We are trying to find the cause for ARM ttk failure. Will get back to you as soon as we have some updates
Hello @niralishah-crest, We are trying to find the cause but havent found anything yet. Taking this matter to team.
Will get back to you as soon as I have an update on this. Thanks and sorry for the delay.
Hello @niralishah-crest, We are trying to find the cause but havent found anything yet. Taking this matter to team.
Will get back to you as soon as I have an update on this. Thanks and sorry for the delay.
@v-prasadboke Any updates on this?
Hello @niralishah-crest, Sorry for the inconvenience we are still working on the issue.
I see still arm ttk is failing
I'll check it out
can you update the branch from master once again
I'm unable to pull changes to my local
can you update the branch from master once again
I'm unable to pull changes to my local
Done
@v-prasadboke Any updates for this?
Hello @niralishah-crest, Sorry for the delay in this issue. We are still working on this issue to get resolve.
Will update as soon as possible on this