We’ve added the following new templates, integrations, steps, and improvements:
New integrations:
Akamai Application Security
New steps and improvements:
Utility steps
Confluence
Crowdstrike
Darktrace
Duo
Jira Cloud
Intezer
Microsoft Active Directory
Microsoft Azure AD
Microsoft Excel
Microsoft Teams Bot
Palo Alto Networks Cortex XDR
Palo Alto Prisma Cloud
Torq Cases
VirusTotal
Akamai Application Security
A new Akamai Application Security steps integration is now available on the Integrations page. The following steps are available:
List configurations
Get hostname coverage
Rename a security configuration
Get a security configuration
Delete a security configuration
Utility steps
Several new utility steps are now available:
Output Utils:
Extract text from PDF file
Create Adaptive Card Table
Cryptographic Utils:
TOTP Token Generator with NTP sync
Extraction Utils:
Expand Shortened URL
Confluence
The Update content step has several new optional parameters:
Content category: The ID of the page or blog post to be updated. If you don't know the content ID, use Get content and filter the results.
Title: Title of the page or blog post.
Version: The new version of the updated page or blog post. Set this to the current version number plus one, unless you are updating the status to 'draft', which requires a version number of 1. If you don't know the current version number, use Get content by ID.
Comment: An optional message to be stored with the version.
Space ID: ID of the containing space. This currently does not support moving the content to a different space.
Status: The updated status of the page or blog post. Note, if you change the status of a page from 'current' to 'draft' and it has an existing draft, the existing draft will be deleted in favor of the updated draft. Additionally, this endpoint can be used to restore a 'trashed' or 'deleted' page to its 'current' status. For restoration, contents will not be updated; only the content status will be changed.
Content body: Type of content representation and body of the page or blog post. For more information, see the step's documentation URL.
Content ID: The ID of the page or blog post to be updated. If you don't know the content ID, use Get content and filter the results.
Crowdstrike
A new step was added to the Crowdstrike integration:
List Alerts
The Isolate or Unisolate a Device step has several new optional parameters:
Device action: Isolating or unisolating the device.
Device identifier: The device ID or hostname.
Identifier type: The type of device identifier.
Comment: A comment on the action
Crowdstrike integration: The name of the CrowdStrike integration.
Minutes to wait for successful status: The waiting period (in minutes) before checking the action's successful execution on the endpoint.
Darktrace
A new step was added to the Darktrace integration:
Run DarkTrace API GET Request
Run DarkTrace API POST Request
Duo
A new step was added to the Duo integration:
Run Duo API GET Request
Run Duo API POST Request
Jira Cloud
A new step was added to the Jira Cloud integration:
Create Issue with ADF Description
Intezer
A new step was added to the Intezer integration:
List Alerts
Get Alert
Submit Activity Feedback
Microsoft Active Directory
A new step was added to the Microsoft Active Directory integration:
Force User Password Reset
Microsoft Azure AD
A new step was added to the Microsoft Azure AD integration:
Get User Details
Microsoft Excel
A new step was added to the Microsoft Excel integration:
Delete a Row
Microsoft Teams Bot
The Send Adaptive Card Form step has a new optional parameter:
Auto install bot: Should the step try to install the bot on the user/team if it is not installed. Default is true.
The Post Adaptive Card step has a new optional parameter:
Auto install bot: Should the step try to install the bot on the user/team if it is not yet installed. Default is true.
The Ask A Question step has a new optional parameter:
Auto install bot: Should the step try to install the bot on the user/team if it is not yet installed. Default is true. Even though an admin has installed this bot for the organization, it still needs to be installed per user/group to be able to interact with it.
Palo Alto Networks Cortex XDR
A new step was added to the Cortex XDR integration:
Run a script
Get script status
Get scripts
Palo Alto Networks Prisma Cloud
A new step was added to the Prisma Cloud integration:
List Alerts v2
Torq Cases
A new step was added to the Torq Cases integration:
Set case management sla remaining time display
VirusTotal
The Enrich IOC step has a new optional parameter:
Extended output: Show raw data from enrichment engine.