Cisco Threat Response Casebook (beta)

Casebook and Investigation Widgets

O que é Cisco Threat Response Casebook (beta)?

Cisco Threat Response Casebook (beta) é uma extensão do Chrome desenvolvida por Cisco XDR, e sua principal característica é "Casebook and Investigation Widgets".

Capturas de Tela da Extensão

screenshot

Baixar o arquivo CRX da Extensão Cisco Threat Response Casebook (beta)

Baixe arquivos de extensão Cisco Threat Response Casebook (beta) no formato crx, instale manualmente as extensões do Chrome no navegador ou compartilhe os arquivos crx com amigos para instalar facilmente as extensões do Chrome.

Instruções de Uso da Extensão

                        Once installed, please visit your region's Threat Response API Clients page to create Casebook client credentials. In order for the casebook extension to function, you must select ALL SCOPES when adding your new API Client.
- NAM: https://visibility.amp.cisco.com/#/settings/oauth
- EU: https://visibility.eu.amp.cisco.com/#/settings/oauth
- APJC: https://visibility.apjc.amp.cisco.com/#/settings/oauth

The Cisco Threat Response Casebook is a powerful and convenient tool provided by Threat Response for saving, sharing, and enriching your threat analysis. Use cases for tracking notes and other bits and pieces of information as you follow leads in Threat Response. You can add observables and notes as you pursue your quarry. 

Along with the Casebook, you'll be able to find and inspect observables through the browser's context menu. Select text on a page, or select a single observable, open the context menu and choose the Cisco Threat Response menu option. The selection will be inspected for observables and you'll be presented with information and actions to help with your investigations.

You can also launch an investigation on a single observable quickly by typing "ctr [space]" in the URL bar then typing or pasting an observable.                    

Informações Básicas da Extensão

Nome Cisco Threat Response Casebook (beta) Cisco Threat Response Casebook (beta)
ID himjbijchjdfcpnihaajckmjlignpkmh
URL Oficial https://chromewebstore.google.com/detail/cisco-threat-response-cas/himjbijchjdfcpnihaajckmjlignpkmh
Descrição Casebook and Investigation Widgets
Tamanho do Arquivo 383 KB
Contagem de Instalações 2,888
Versão Atual 0.9.6
Última Atualização 2020-10-01
Data de Publicação 2020-01-30
Classificação 4.70/5 Total de 53 Avaliações
Desenvolvedor Cisco XDR
Email [email protected]
Tipo de Pagamento free
URL da Página de Política de Privacidade https://trustportal.cisco.com/c/r/ctp/trust-portal.html
Idiomas Suportados en-US
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "manifest_version": 2,
    "name": "Cisco Threat Response Casebook (beta)",
    "description": "Casebook and Investigation Widgets",
    "version": "0.9.6",
    "browser_action": {
        "default_popup": "index.html",
        "default_title": "Cisco Threat Response Casebook",
        "default_icon": {
            "16": "img\/casebook16.png",
            "48": "img\/casebook48.png",
            "128": "img\/casebook128.png"
        }
    },
    "permissions": [
        "activeTab",
        "contextMenus",
        "storage",
        "https:\/\/visibility.int.iroh.site\/",
        "https:\/\/private.intel.int.iroh.site\/",
        "https:\/\/visibility.test.iroh.site\/",
        "https:\/\/private.intel.test.iroh.site\/",
        "https:\/\/visibility.apjc.amp.cisco.com\/",
        "https:\/\/private.intel.apjc.amp.cisco.com\/",
        "https:\/\/visibility.eu.amp.cisco.com\/",
        "https:\/\/private.intel.eu.amp.cisco.com\/",
        "https:\/\/visibility.amp.cisco.com\/",
        "https:\/\/private.intel.amp.cisco.com\/"
    ],
    "icons": {
        "16": "img\/casebook16.png",
        "48": "img\/casebook48.png",
        "128": "img\/casebook128.png"
    },
    "omnibox": {
        "keyword": "ctr"
    },
    "background": {
        "scripts": [
            "js\/config\/config.js",
            "js\/lib\/ats-integrations-extension.js",
            "js\/requests.js",
            "js\/background.js"
        ]
    },
    "content_scripts": [
        {
            "run_at": "document_idle",
            "matches": [
                "*:\/\/*\/*",
                "https:\/\/*\/*",
                "file:\/\/*\/*"
            ],
            "js": [
                "js\/lib\/tether.min.js",
                "js\/inject.js"
            ]
        }
    ],
    "web_accessible_resources": [
        "js\/lib\/ats-integrations-extension.js",
        "js\/config\/config.js",
        "html\/widget.html"
    ]
}