CybleThreatIntel
Cyble Threat Intelligence for Vision Users. Must have access to Cyble TAXII Feed to access the threat intelligence.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- CybleThreatIntel
Configuration parameters
- tlp_color — Traffic Light Protocol Color
- feedFetchInterval — Feed Fetch Interval
- feed — Fetch indicators
- feedReliability — Source Reliability (required)
- feedReputation — Indicator Reputation
- feedTags — Tags
- feedExpirationPolicy —
- feedExpirationInterval —
- feedBypassExclusionList — Bypass exclusion list
- base_url — Base URL
- credentials — Access Token
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- collection — Collection Name
- discovery_service — Discovery Service
- initial_interval — First fetch time (by days) (required)
- limit — Indicator Fetch Limit
Commands (3)
- cyble-vision-fetch-taxii — Deprecated command. Do not use.
- cyble-vision-get-collection-names — Deprecated command. Do not use.
- cyble-vision-ioc-lookup — Lookup a single IOC using the Cyble Vision API.