Skip to content

Commit 8381800

Browse files
committed
fix: Replace hardcoded date with dynamic 30-day lookback in TacitRed SentinelOne playbook
- Changed min_date=2025-10-26 to date_from with dynamic calculation - Uses formatDateTime(addDays(utcNow(), -30), 'yyyy-MM-dd') - Updated both Playbook and mainTemplate.json - Regenerated Package/3.0.0.zip
1 parent 831026f commit 8381800

File tree

3 files changed

+2
-2
lines changed

3 files changed

+2
-2
lines changed
22 Bytes
Binary file not shown.

Solutions/TacitRed-SentinelOne/Package/mainTemplate.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -167,7 +167,7 @@
167167
"type": "Http",
168168
"inputs": {
169169
"method": "GET",
170-
"uri": "@{parameters('TacitRed_ApiUrl')}?types[]=compromised_credentials&domains[]=@{encodeUriComponent(parameters('TacitRed_Domain'))}&min_date=2025-10-26&page=1&page_size=100",
170+
"uri": "@{parameters('TacitRed_ApiUrl')}?types[]=compromised_credentials&domains[]=@{encodeUriComponent(parameters('TacitRed_Domain'))}&date_from=@{formatDateTime(addDays(utcNow(), -30), 'yyyy-MM-dd')}&page=1&page_size=100",
171171
"headers": {
172172
"accept": "application/json",
173173
"User-Agent": "Microsoft-Sentinel-TacitRed/1.0",

Solutions/TacitRed-SentinelOne/Playbooks/TacitRedToSentinelOne_Playbook.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -101,7 +101,7 @@
101101
"type": "Http",
102102
"inputs": {
103103
"method": "GET",
104-
"uri": "@{parameters('TacitRed_ApiUrl')}?types[]=compromised_credentials&domains[]=@{encodeUriComponent(parameters('TacitRed_Domain'))}&min_date=2025-10-26&page=1&page_size=100",
104+
"uri": "@{parameters('TacitRed_ApiUrl')}?types[]=compromised_credentials&domains[]=@{encodeUriComponent(parameters('TacitRed_Domain'))}&date_from=@{formatDateTime(addDays(utcNow(), -30), 'yyyy-MM-dd')}&page=1&page_size=100",
105105
"headers": {
106106
"accept": "application/json",
107107
"User-Agent": "Microsoft-Sentinel-TacitRed/1.0",

0 commit comments

Comments
 (0)