FeedCyCognito
The CyCognito Feed integration retrieves the discovered assets from the CyCognito platform based on user-specified filters. A comprehensive dashboard and layout are also included.
- Category
- Data Enrichment & Threat Intelligence
- Pack
- FeedCyCognito
Configuration parameters
- feedIncremental — Incremental Feed
- api_key — API Key (required)
- region — Region
- other_region — Other Region
- asset_type — Asset Type (required)
- first_fetch — First Fetch Time
- max_fetch — Max Fetch
- organizations — Organizations
- security_grade — Security Grade
- hosting_type — Hosting Type
- locations — Locations
- feed — Fetch indicators
- feedReputation — Indicator Reputation
- feedReliability — Source Reliability (required)
- feedFetchInterval — Feed Fetch Interval
- feedExpirationPolicy —
- feedExpirationInterval —
- feedBypassExclusionList — Bypass exclusion list
- feedTags — Tags
- tlp_color — Traffic Light Protocol Color
- default_mapping — Default Indicator Mapping
- only_alive — Fetch only Live Assets
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
Commands (1)
- cycognito-get-indicators — Fetches a given limit of indicators from the CyCognito platform and displays them in human-readable format in the war room.