Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Different analyzer results between manually built instance and trainingVM #442

Closed
k41zen opened this issue Mar 19, 2019 · 1 comment
Closed

Comments

@k41zen
Copy link

k41zen commented Mar 19, 2019

Request Type

Bug

Work Environment

N/A

Question Answer
OS version (server) Ubuntu
OS version (client) 16.04
Cortex Analyzer Name All
Cortex Analyzer Version N/A
Cortex Version N/A
Browser type & version N/A

Description

I originally downloaded the training VM to test. Now tested, I've manually built a hive/cortex instance using Ubuntu 16.04 and the latest version of Cortex (2.1.3-1) and theHive (3.2.1-1).

The issue is different analyzer results between manually built instance and trainingVM.

Steps to Reproduce

When I submit an example IP (111[.]230[.]247[.]243) to the training VM I get these results:

Screenshot 2019-03-19 at 11 38 51

When I submit the same IP to the manually built Ubuntu instance I get these results:

Screenshot 2019-03-19 at 11 38 35

Also, the tags are populating automatically within the observable. I have to click on the Observable tab (which shows me all observables) to then watch the tags come rolling in.

Also, when I click on an observable that has reported something I don't see to report at the bottom beneath the analyzers list like this (screenshot from the working VM. I see nothing in the Ubuntu instance):

Screenshot 2019-03-19 at 12 16 41

@k41zen
Copy link
Author

k41zen commented Mar 19, 2019

Raised this in the main hive area. Closing this issue here.

@k41zen k41zen closed this as completed Mar 19, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant