Hi Guys! While reading documentation of SIEM module, my attention attracted by Alert Playbooks module. There is no examples or extra-materials for writing scripts in Playbooks. Which syntax does it use?
Playbook other that adding text to the notifications is able to launch a command. It works exactly the same as if you'd log into the Linux console and start typing commands. 🙂