TheHive-Project / TheHive-Project/Cortex-Analyzers

McAfee ATD Analyzer

Open
#25 7 comments 1 reaction 0 assignees View on GitHub

Nobody has claimed this yet.

category:feature-request scope:analyzer
Dominant language
Python
Stars
490
Forks
405
Avg merge
2d 43m
Merged PRs (30d)
8

Description

Request Type

Analyzer Request

Work Environment

N/A

Problem Description

Create an analyzer that will submit files to a local McAfee ATD sandbox instance and retrieve the report and indicators that are generated

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by reviewing the repository's existing Python analyzer structure and the McAfee ATD submission and reporting requirements. Done means files can be submitted to a local McAfee ATD instance and the resulting report and generated indicators are retrieved; the issue does not name a file or test to run.

Written by the indexing model from the issue text.

Assessment

Tech stack
python
Domain
security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.