Releases: splunk-soar-connectors/sandflysecurity
Releases · splunk-soar-connectors/sandflysecurity
1.4.1
1.4.0
- Added two new actions to get information from the Sandfly Server
- list users - List all the user accounts on the specified system
- list processes - List all the processes running on the specified system
1.3.0
- Added two new actions to get information from the Sandfly Server
- get system info - Get information about an endpoint
- list endpoints - List all the endpoints/sensors configured on the device
1.2.0
- Added several new actions to run a specific subset of Sandfly types:
- sandfly full investigation - run a full Sandfly investigation scan for all process, file, directory, log, user, incident, policy and recon types.
- sandfly process investigation - run an investigation scan for the Sandfly process type.
- sandfly file investigation - run an investigation scan for the Sandfly file type.
- sandfly directory investigation - run an investigation scan for the Sandfly directory type.
- sandfly log tamper investigation - run an investigation scan for the Sandfly log type.
- sandfly user investigation - run an investigation scan for the Sandfly user type.
- sandfly recon investigation - run an invesgitation scan for the Sandfly recon type.
1.0.1
- Initial Release
- Added support for 'scan host' action