diff --git a/analyzers/Jupyter_Analyzer/Jupyter_Run_Notebook_Analyzer.json b/analyzers/Jupyter_Analyzer/Jupyter_Run_Notebook_Analyzer.json index 4223f074d..b2fc90e9e 100644 --- a/analyzers/Jupyter_Analyzer/Jupyter_Run_Notebook_Analyzer.json +++ b/analyzers/Jupyter_Analyzer/Jupyter_Run_Notebook_Analyzer.json @@ -18,7 +18,8 @@ "registry", "regexp", "other", - "filename" + "filename", + "mail-subject" ], "description": "Execute a parameterized notebook in Jupyter", "baseConfig": "Jupyter", diff --git a/analyzers/MISP/MISP.json b/analyzers/MISP/MISP.json index 9b85bc52f..1d5b341c3 100644 --- a/analyzers/MISP/MISP.json +++ b/analyzers/MISP/MISP.json @@ -18,7 +18,8 @@ "registry", "regexp", "other", - "filename" + "filename", + "mail-subject" ], "baseConfig": "MISP", "command": "MISP/misp.py", diff --git a/analyzers/OpenCTI/OpenCTI_SearchExactObservable.json b/analyzers/OpenCTI/OpenCTI_SearchExactObservable.json index 0b059946a..a66a80201 100644 --- a/analyzers/OpenCTI/OpenCTI_SearchExactObservable.json +++ b/analyzers/OpenCTI/OpenCTI_SearchExactObservable.json @@ -18,7 +18,8 @@ "registry", "regexp", "other", - "filename" + "filename", + "mail-subject" ], "config": { "service": "search_exact" diff --git a/analyzers/OpenCTI/OpenCTI_SearchObservables.json b/analyzers/OpenCTI/OpenCTI_SearchObservables.json index 345fcf11f..290a2b008 100644 --- a/analyzers/OpenCTI/OpenCTI_SearchObservables.json +++ b/analyzers/OpenCTI/OpenCTI_SearchObservables.json @@ -18,7 +18,8 @@ "registry", "regexp", "other", - "filename" + "filename", + "mail-subject" ], "config": { "service": "search_observables" diff --git a/analyzers/SoltraEdge/Soltra_search.json b/analyzers/SoltraEdge/Soltra_search.json index b2d85fb9a..41b47a895 100644 --- a/analyzers/SoltraEdge/Soltra_search.json +++ b/analyzers/SoltraEdge/Soltra_search.json @@ -5,7 +5,22 @@ "url": "http://soltra.com/en/", "license" : "AGPL-V3", "description": "Query against Soltra Edge.", - "dataTypeList": ["domain", "ip", "url", "fqdn", "uri_path","user-agent", "hash", "mail", "mail_subject" , "registry", "regexp", "other", "filename"], + "dataTypeList": [ + "domain", + "ip", + "url", + "fqdn", + "uri_path", + "user-agent", + "hash", + "mail", + "mail_subject", + "registry", + "regexp", + "other", + "filename", + "mail-subject" + ], "command": "SoltraEdge/soltra.py", "baseConfig": "Soltra_Edge", "config": { diff --git a/analyzers/Splunk/Splunk_Search_mail_subject.json b/analyzers/Splunk/Splunk_Search_mail_subject.json index ac0a13d7f..8b5867cd9 100644 --- a/analyzers/Splunk/Splunk_Search_mail_subject.json +++ b/analyzers/Splunk/Splunk_Search_mail_subject.json @@ -4,7 +4,10 @@ "url": "https://www.splunk.com", "author": "Unit777, LetMeR00t", "license": "AGPL-V3", - "dataTypeList": ["mail_subject"], + "dataTypeList": [ + "mail_subject", + "mail-subject" + ], "description": "Execute a savedsearch on a Splunk instance with a mail subject as argument", "baseConfig": "Splunk", "config": {