Cisco Threat Response Casebook (beta)

Casebook and Investigation Widgets

Was ist Cisco Threat Response Casebook (beta)?

Cisco Threat Response Casebook (beta) ist eine Chrome-Erweiterung, die von Cisco XDR entwickelt wurde, und ihr Hauptmerkmal ist "Casebook and Investigation Widgets".

Erweiterungsscreenshots

screenshot

Cisco Threat Response Casebook (beta)-Erweiterungs-CRX-Datei herunterladen

Laden Sie Cisco Threat Response Casebook (beta)-Erweiterungsdateien im crx-Format herunter, installieren Sie Chrome-Erweiterungen manuell im Browser oder teilen Sie die crx-Dateien mit Freunden, um Chrome-Erweiterungen einfach zu installieren.

Anleitung zur Verwendung der Erweiterung

                        Once installed, please visit your region's Threat Response API Clients page to create Casebook client credentials. In order for the casebook extension to function, you must select ALL SCOPES when adding your new API Client.
- NAM: https://visibility.amp.cisco.com/#/settings/oauth
- EU: https://visibility.eu.amp.cisco.com/#/settings/oauth
- APJC: https://visibility.apjc.amp.cisco.com/#/settings/oauth

The Cisco Threat Response Casebook is a powerful and convenient tool provided by Threat Response for saving, sharing, and enriching your threat analysis. Use cases for tracking notes and other bits and pieces of information as you follow leads in Threat Response. You can add observables and notes as you pursue your quarry. 

Along with the Casebook, you'll be able to find and inspect observables through the browser's context menu. Select text on a page, or select a single observable, open the context menu and choose the Cisco Threat Response menu option. The selection will be inspected for observables and you'll be presented with information and actions to help with your investigations.

You can also launch an investigation on a single observable quickly by typing "ctr [space]" in the URL bar then typing or pasting an observable.                    

Grundlegende Informationen zur Erweiterung

Name Cisco Threat Response Casebook (beta) Cisco Threat Response Casebook (beta)
ID himjbijchjdfcpnihaajckmjlignpkmh
Offizielle URL https://chromewebstore.google.com/detail/cisco-threat-response-cas/himjbijchjdfcpnihaajckmjlignpkmh
Beschreibung Casebook and Investigation Widgets
Dateigröße 383 KB
Installationsanzahl 2,888
Aktuelle Version 0.9.6
Letztes Update 2020-10-01
Veröffentlichungsdatum 2020-01-30
Bewertung 4.70/5 Insgesamt 53 Bewertungen
Entwickler Cisco XDR
E-Mail [email protected]
Zahlungsart free
URL der Datenschutzrichtlinien-Seite https://trustportal.cisco.com/c/r/ctp/trust-portal.html
Unterstützte Sprachen en-US
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "manifest_version": 2,
    "name": "Cisco Threat Response Casebook (beta)",
    "description": "Casebook and Investigation Widgets",
    "version": "0.9.6",
    "browser_action": {
        "default_popup": "index.html",
        "default_title": "Cisco Threat Response Casebook",
        "default_icon": {
            "16": "img\/casebook16.png",
            "48": "img\/casebook48.png",
            "128": "img\/casebook128.png"
        }
    },
    "permissions": [
        "activeTab",
        "contextMenus",
        "storage",
        "https:\/\/visibility.int.iroh.site\/",
        "https:\/\/private.intel.int.iroh.site\/",
        "https:\/\/visibility.test.iroh.site\/",
        "https:\/\/private.intel.test.iroh.site\/",
        "https:\/\/visibility.apjc.amp.cisco.com\/",
        "https:\/\/private.intel.apjc.amp.cisco.com\/",
        "https:\/\/visibility.eu.amp.cisco.com\/",
        "https:\/\/private.intel.eu.amp.cisco.com\/",
        "https:\/\/visibility.amp.cisco.com\/",
        "https:\/\/private.intel.amp.cisco.com\/"
    ],
    "icons": {
        "16": "img\/casebook16.png",
        "48": "img\/casebook48.png",
        "128": "img\/casebook128.png"
    },
    "omnibox": {
        "keyword": "ctr"
    },
    "background": {
        "scripts": [
            "js\/config\/config.js",
            "js\/lib\/ats-integrations-extension.js",
            "js\/requests.js",
            "js\/background.js"
        ]
    },
    "content_scripts": [
        {
            "run_at": "document_idle",
            "matches": [
                "*:\/\/*\/*",
                "https:\/\/*\/*",
                "file:\/\/*\/*"
            ],
            "js": [
                "js\/lib\/tether.min.js",
                "js\/inject.js"
            ]
        }
    ],
    "web_accessible_resources": [
        "js\/lib\/ats-integrations-extension.js",
        "js\/config\/config.js",
        "html\/widget.html"
    ]
}