Cisco Threat Response Casebook (beta)
45 个评分
)概述
Casebook and Investigation Widgets
Once installed, please visit your region's Threat Response API Clients page to create Casebook client credentials. In order for the casebook extension to function, you must select ALL SCOPES when adding your new API Client. - NAM: https://visibility.amp.cisco.com/#/settings/oauth - EU: https://visibility.eu.amp.cisco.com/#/settings/oauth - APJC: https://visibility.apjc.amp.cisco.com/#/settings/oauth The Cisco Threat Response Casebook is a powerful and convenient tool provided by Threat Response for saving, sharing, and enriching your threat analysis. Use cases for tracking notes and other bits and pieces of information as you follow leads in Threat Response. You can add observables and notes as you pursue your quarry. Along with the Casebook, you'll be able to find and inspect observables through the browser's context menu. Select text on a page, or select a single observable, open the context menu and choose the Cisco Threat Response menu option. The selection will be inspected for observables and you'll be presented with information and actions to help with your investigations. You can also launch an investigation on a single observable quickly by typing "ctr [space]" in the URL bar then typing or pasting an observable.
4.7 星(5 星制)45 个评分
详情
- 版本0.9.6
- 上次更新日期2020年10月1日
- 提供方Cisco XDR
- 大小383KiB
- 语言English (United States)
- 开发者Threat, Detection and Response
11501 Burnet Rd Building 906, Floor 3 Austin, TX 78758 US邮箱
roberha2@cisco.com - 非交易者该开发者尚未将自己标识为交易者。欧盟地区消费者须知:消费者权利可能不适用于您与该开发者达成的合约。