The "Pangea - File Hash Enrichment with Cache" workflow template is designed to enhance threat intelligence by analyzing file hashes. It receives a file hash as input and checks for cached reputation data from the past 24 hours. If no cached data is found, it queries Pangea for a comprehensive reputation analysis. This workflow is ideal for organizations seeking to streamline threat intelligence processes by leveraging cached data to reduce redundant queries and improve response times.
Optional Triggers
["This workflow is intended to be used as a function."]
Use Cases
Function , Threat Intelligence Enrichment
Workflow Breakdown
Receives a File Hash as input.
Lookup global variables for cached responses in the past 24 hours.
Lookup global variables for cached responses in the past 24 hours.
When no reputation is found in cache, a summary of the analysis data is created and saved with the original api data.
Vendors
Utils, Torq, Pangea
Workflow Output
Returns full analysis data and a summary of the information.
Tips
Set "Provide Raw Data Analysis" to true or false to add or remove original vendor information to the output.
