Cisco Threat Response Casebook (beta)

Casebook and Investigation Widgets

Vad är Cisco Threat Response Casebook (beta)?

Cisco Threat Response Casebook (beta) är en Chrome-tillägg utvecklad av Cisco XDR, och dess huvudfunktion är "Casebook and Investigation Widgets".

Tilläggsskärmbilder

screenshot

Ladda ner Cisco Threat Response Casebook (beta)-förlängningens CRX-fil

Ladda ner Cisco Threat Response Casebook (beta)-filändelser i crx-format, installera Chrome-tillägg manuellt i webbläsaren eller dela crx-filerna med vänner för att enkelt installera Chrome-tillägg.

Användarmanual för Tillägg

                        Once installed, please visit your region's Threat Response API Clients page to create Casebook client credentials. In order for the casebook extension to function, you must select ALL SCOPES when adding your new API Client.
- NAM: https://visibility.amp.cisco.com/#/settings/oauth
- EU: https://visibility.eu.amp.cisco.com/#/settings/oauth
- APJC: https://visibility.apjc.amp.cisco.com/#/settings/oauth

The Cisco Threat Response Casebook is a powerful and convenient tool provided by Threat Response for saving, sharing, and enriching your threat analysis. Use cases for tracking notes and other bits and pieces of information as you follow leads in Threat Response. You can add observables and notes as you pursue your quarry. 

Along with the Casebook, you'll be able to find and inspect observables through the browser's context menu. Select text on a page, or select a single observable, open the context menu and choose the Cisco Threat Response menu option. The selection will be inspected for observables and you'll be presented with information and actions to help with your investigations.

You can also launch an investigation on a single observable quickly by typing "ctr [space]" in the URL bar then typing or pasting an observable.                    

Grundläggande Information om Tillägg

Namn Cisco Threat Response Casebook (beta) Cisco Threat Response Casebook (beta)
ID himjbijchjdfcpnihaajckmjlignpkmh
Officiell webbadress https://chromewebstore.google.com/detail/cisco-threat-response-cas/himjbijchjdfcpnihaajckmjlignpkmh
Beskrivning Casebook and Investigation Widgets
Filstorlek 383 KB
Antal Installationer 2,888
Aktuell Version 0.9.6
Senast Uppdaterad 2020-10-01
Publiceringsdatum 2020-01-30
Betyg 4.70/5 Totalt 53 Betyg
Utvecklare Cisco XDR
E-post [email protected]
Betalningssätt free
URL till Sekretesspolicy Sidan https://trustportal.cisco.com/c/r/ctp/trust-portal.html
Stödda Språk en-US
manifest.json
{
    "update_url": "https:\/\/clients2.google.com\/service\/update2\/crx",
    "manifest_version": 2,
    "name": "Cisco Threat Response Casebook (beta)",
    "description": "Casebook and Investigation Widgets",
    "version": "0.9.6",
    "browser_action": {
        "default_popup": "index.html",
        "default_title": "Cisco Threat Response Casebook",
        "default_icon": {
            "16": "img\/casebook16.png",
            "48": "img\/casebook48.png",
            "128": "img\/casebook128.png"
        }
    },
    "permissions": [
        "activeTab",
        "contextMenus",
        "storage",
        "https:\/\/visibility.int.iroh.site\/",
        "https:\/\/private.intel.int.iroh.site\/",
        "https:\/\/visibility.test.iroh.site\/",
        "https:\/\/private.intel.test.iroh.site\/",
        "https:\/\/visibility.apjc.amp.cisco.com\/",
        "https:\/\/private.intel.apjc.amp.cisco.com\/",
        "https:\/\/visibility.eu.amp.cisco.com\/",
        "https:\/\/private.intel.eu.amp.cisco.com\/",
        "https:\/\/visibility.amp.cisco.com\/",
        "https:\/\/private.intel.amp.cisco.com\/"
    ],
    "icons": {
        "16": "img\/casebook16.png",
        "48": "img\/casebook48.png",
        "128": "img\/casebook128.png"
    },
    "omnibox": {
        "keyword": "ctr"
    },
    "background": {
        "scripts": [
            "js\/config\/config.js",
            "js\/lib\/ats-integrations-extension.js",
            "js\/requests.js",
            "js\/background.js"
        ]
    },
    "content_scripts": [
        {
            "run_at": "document_idle",
            "matches": [
                "*:\/\/*\/*",
                "https:\/\/*\/*",
                "file:\/\/*\/*"
            ],
            "js": [
                "js\/lib\/tether.min.js",
                "js\/inject.js"
            ]
        }
    ],
    "web_accessible_resources": [
        "js\/lib\/ats-integrations-extension.js",
        "js\/config\/config.js",
        "html\/widget.html"
    ]
}