Cisco Threat Response Casebook (beta)

Casebook and Investigation Widgets

¿Qué es Cisco Threat Response Casebook (beta)?

Cisco Threat Response Casebook (beta) es una extensión de Chrome desarrollada por Cisco XDR, y su función principal es "Casebook and Investigation Widgets".

Capturas de Pantalla de la Extensión

screenshot

Descargar Archivo CRX de la Extensión Cisco Threat Response Casebook (beta)

Descarga archivos de extensión Cisco Threat Response Casebook (beta) en formato crx, instala manualmente las extensiones de Chrome en el navegador o comparte los archivos crx con amigos para instalar fácilmente las extensiones de Chrome.

Instrucciones de Uso de la Extensión

                        Once installed, please visit your region's Threat Response API Clients page to create Casebook client credentials. In order for the casebook extension to function, you must select ALL SCOPES when adding your new API Client.
- NAM: https://visibility.amp.cisco.com/#/settings/oauth
- EU: https://visibility.eu.amp.cisco.com/#/settings/oauth
- APJC: https://visibility.apjc.amp.cisco.com/#/settings/oauth

The Cisco Threat Response Casebook is a powerful and convenient tool provided by Threat Response for saving, sharing, and enriching your threat analysis. Use cases for tracking notes and other bits and pieces of information as you follow leads in Threat Response. You can add observables and notes as you pursue your quarry. 

Along with the Casebook, you'll be able to find and inspect observables through the browser's context menu. Select text on a page, or select a single observable, open the context menu and choose the Cisco Threat Response menu option. The selection will be inspected for observables and you'll be presented with information and actions to help with your investigations.

You can also launch an investigation on a single observable quickly by typing "ctr [space]" in the URL bar then typing or pasting an observable.                    

Información Básica de la Extensión

Nombre Cisco Threat Response Casebook (beta) Cisco Threat Response Casebook (beta)
ID himjbijchjdfcpnihaajckmjlignpkmh
URL Oficial https://chromewebstore.google.com/detail/cisco-threat-response-cas/himjbijchjdfcpnihaajckmjlignpkmh
Descripción Casebook and Investigation Widgets
Tamaño del Archivo 383 KB
Cantidad de Instalaciones 2,888
Versión Actual 0.9.6
Última Actualización 2020-10-01
Fecha de Publicación 2020-01-30
Calificación 4.70/5 Total de 53 Calificaciones
Desarrollador Cisco XDR
Correo electrónico [email protected]
Tipo de Pago free
URL de la Página de Política de Privacidad https://trustportal.cisco.com/c/r/ctp/trust-portal.html
Idiomas Soportados en-US
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "manifest_version": 2,
    "name": "Cisco Threat Response Casebook (beta)",
    "description": "Casebook and Investigation Widgets",
    "version": "0.9.6",
    "browser_action": {
        "default_popup": "index.html",
        "default_title": "Cisco Threat Response Casebook",
        "default_icon": {
            "16": "img\/casebook16.png",
            "48": "img\/casebook48.png",
            "128": "img\/casebook128.png"
        }
    },
    "permissions": [
        "activeTab",
        "contextMenus",
        "storage",
        "https:\/\/visibility.int.iroh.site\/",
        "https:\/\/private.intel.int.iroh.site\/",
        "https:\/\/visibility.test.iroh.site\/",
        "https:\/\/private.intel.test.iroh.site\/",
        "https:\/\/visibility.apjc.amp.cisco.com\/",
        "https:\/\/private.intel.apjc.amp.cisco.com\/",
        "https:\/\/visibility.eu.amp.cisco.com\/",
        "https:\/\/private.intel.eu.amp.cisco.com\/",
        "https:\/\/visibility.amp.cisco.com\/",
        "https:\/\/private.intel.amp.cisco.com\/"
    ],
    "icons": {
        "16": "img\/casebook16.png",
        "48": "img\/casebook48.png",
        "128": "img\/casebook128.png"
    },
    "omnibox": {
        "keyword": "ctr"
    },
    "background": {
        "scripts": [
            "js\/config\/config.js",
            "js\/lib\/ats-integrations-extension.js",
            "js\/requests.js",
            "js\/background.js"
        ]
    },
    "content_scripts": [
        {
            "run_at": "document_idle",
            "matches": [
                "*:\/\/*\/*",
                "https:\/\/*\/*",
                "file:\/\/*\/*"
            ],
            "js": [
                "js\/lib\/tether.min.js",
                "js\/inject.js"
            ]
        }
    ],
    "web_accessible_resources": [
        "js\/lib\/ats-integrations-extension.js",
        "js\/config\/config.js",
        "html\/widget.html"
    ]
}