Try in Splunk SOAR


Detects available entities and routes them to attribute lookup playbooks. The output of the playbooks will create new artifacts for any technologies that returned information.

  • Type: Investigation
  • Product: Splunk SOAR
  • Apps:
  • Last Updated: 2023-03-06
  • Author: Lou Stella, Splunk
  • ID: fc0edc96-ff2b-68d0-9a4d-63da6783fd64
  • Use-cases:
    • Enrichment

Associated Detections

How To Implement

This playbook looks for artifacts and then dispatches the community Attribute Lookup playbooks. This playbook takes the output of those playbooks and nicely formats them into new artifacts with their results.

Explore Playbook


Required field


source | version: 1