Skip to content
Auto-Generated Documentation

This set of documentation is automatically generated from source, and will help ensure any change to functionality will always be documented and available on release.

AssemblyLine

The AssemblyLine fields contain any data obtained from AssemblyLine relating to the alert.

Field Type Description Required Default
antivirus List [ALRecord] None Yes []
attribution List [ALRecord] None Yes []
behaviour List [ALRecord] None Yes []
domain List [ALRecord] None Yes []
heuristic List [ALRecord] None Yes []
mitre Mitre None Optional See Mitre for more details.
uri List [ALRecord] None Yes []
yara List [ALRecord] None Yes []