Work Flow - Palo-Cortex/hackthon2020 GitHub Wiki
- Get Attack Group Dossier “MO” - Pull from Mitre or Autofocus or can we pull campaign from Pan Unit42 CozyDuke
- Searching environment for IOCs
- Create new Incident
- Build context around IOC (define Impact)
- List possible actions for analyst
- Update Dashboard to indicate success or failure of hunt