Skip to content

[Zerofox] Key Incidents Integration#39834

Merged
MosheEichler merged 8 commits intomasterfrom
contrib/riskive_zerofox_key_incidents_app
May 11, 2025
Merged

[Zerofox] Key Incidents Integration#39834
MosheEichler merged 8 commits intomasterfrom
contrib/riskive_zerofox_key_incidents_app

Conversation

@content-bot
Copy link
Copy Markdown
Contributor

Original External PR

external pull request

Contributor

@DNRRomero

Contributing to Cortex XSOAR Content

Make sure to register your contribution by filling the contribution registration form

The Pull Request will be reviewed only after the contribution registration form is filled.

Status

  • In Progress
  • Ready
  • In Hold - (Reason for hold)

Description

Creates a new Pack for ingesting ZeroFox Key Incidents as Incident data

Must have

  • Tests
  • Documentation

* Add new base application (#142)

* Format applications (#144)

* add key incident client (#145)

* add key incident attachment method (#146)

* Add simple key mapper (#147)

* add incident type, incident type field and layout to ZeroFox Key Incident Pack (#149)

* Add Fetch Incidents (#148)

* add key incident attachment command (#150)

* fix classifier, layout and incident type formats (#152)

* update release notes

* move key incidents package to zerofox pack (#153)

* Move key incidents integration to zerofox pack

* correct pack readme to include zerofox ki integration

* improve unit tests in ki integration (#154)

* rename integration to ZeroFoxKeyIncidents

* update release notes

* correct incident field names

* format ZeroFox pack files

---------

Co-authored-by: Leonardo de Requeséns <[email protected]>
@content-bot content-bot added Contribution Thank you! Contributions are always welcome! docs-approved Partner pending-demo Demo pending Contribution Form Filled Whether contribution form filled or not. pending-contributor The PR is pending the response of its creator Partner Support Level Indicates that the contribution is for Partner supported pack Internal PR Security Review Partner-Approved Pending-Partner Security Approved If a contribution has been approved for merge by the security team, then this will allow a merge ready-for-pipeline-running Whether the pr is ready for running the whole pipeline, including testing on SAAS machines labels May 6, 2025
@content-bot content-bot requested a review from MosheEichler May 6, 2025 13:33
@github-actions
Copy link
Copy Markdown

github-actions Bot commented May 6, 2025

Coverage

Coverage Report
FileStmtsMissCoverMissing
Packs/ZeroFox/Integrations/ZeroFox
   ZeroFox.py7006191%111, 114, 138, 155, 177, 217, 240, 744–745, 764–765, 900, 1175, 1198, 1213, 1227, 1238–1239, 1291–1292, 1339, 1439, 1502–1503, 1507, 1536, 1565, 1650, 1670, 1741, 1767, 1794, 1815, 1835, 1851–1855, 1859–1861, 1863, 1891–1893, 1903, 1905–1909, 1914–1919, 1921, 1924–1925
Packs/ZeroFox/Integrations/ZeroFoxKeyIncidents
   ZeroFoxKeyIncidents.py1934477%153–157, 163–169, 267, 292–293, 296, 327–328, 343–349, 354, 357–359, 361, 369–373, 378–383, 385, 388–389
TOTAL89310588% 

Tests Skipped Failures Errors Time
9 0 💤 0 ❌ 0 🔥 3.098s ⏱️

@content-bot
Copy link
Copy Markdown
Contributor Author

Validate summary
The following errors were thrown as a part of this pr: GR103, BA116.
The following errors can be ignored: GR103, BA116.

Verdict: PR can be force merged from validate perspective? ❌

@MosheEichler MosheEichler merged commit be01bdc into master May 11, 2025
17 checks passed
@MosheEichler MosheEichler deleted the contrib/riskive_zerofox_key_incidents_app branch May 11, 2025 13:14
TOUFIKIzakarya pushed a commit to TOUFIKIzakarya/content that referenced this pull request May 22, 2025
* [Zerofox] Key Incidents Integration (demisto#39506)

* Add new base application (demisto#142)

* Format applications (demisto#144)

* add key incident client (demisto#145)

* add key incident attachment method (demisto#146)

* Add simple key mapper (demisto#147)

* add incident type, incident type field and layout to ZeroFox Key Incident Pack (demisto#149)

* Add Fetch Incidents (demisto#148)

* add key incident attachment command (demisto#150)

* fix classifier, layout and incident type formats (demisto#152)

* update release notes

* move key incidents package to zerofox pack (demisto#153)

* Move key incidents integration to zerofox pack

* correct pack readme to include zerofox ki integration

* improve unit tests in ki integration (demisto#154)

* rename integration to ZeroFoxKeyIncidents

* update release notes

* correct incident field names

* format ZeroFox pack files

---------

Co-authored-by: Leonardo de Requeséns <[email protected]>

* post demo fixes

* fix incident name

* ignore

* fix incident name

---------

Co-authored-by: Diego Ramirez R <[email protected]>
Co-authored-by: Leonardo de Requeséns <[email protected]>
Co-authored-by: meichler <[email protected]>
@content-bot content-bot restored the contrib/riskive_zerofox_key_incidents_app branch November 17, 2025 12:01
@content-bot content-bot deleted the contrib/riskive_zerofox_key_incidents_app branch November 17, 2025 14:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Contribution Form Filled Whether contribution form filled or not. Contribution Thank you! Contributions are always welcome! docs-approved Internal PR Partner Support Level Indicates that the contribution is for Partner supported pack Partner Partner-Approved pending-contributor The PR is pending the response of its creator pending-demo Demo pending Pending-Partner ready-for-pipeline-running Whether the pr is ready for running the whole pipeline, including testing on SAAS machines Security Approved If a contribution has been approved for merge by the security team, then this will allow a merge Security Review

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants