Cyjax Feed
The feed allows customers to pull indicators of compromise from cyber incidents (IP addresses, URLs, domains, CVE and file hashes).
- Category
- Data Enrichment & Threat Intelligence
- Pack
- FeedCyjax
Configuration parameters
- url — Cyjax API URL (required)
- apikey — API Key (required)
- insecure — Trust any certificate (not secure)
- proxy — Use system proxy settings
- feed — Fetch indicators
- feedReputation — Indicator Reputation
- feedReliability — Source Reliability (required)
- tlp_color — Traffic Light Protocol Color
- use_cyjax_tlp — Use Cyjax feed TLP
- feedTags — Tags
- feedExpirationPolicy —
- feedExpirationInterval —
- feedIncremental — Incremental Feed
- feedBypassExclusionList — Bypass exclusion list
- feedFetchInterval — Feed Fetch Interval
- first_fetch — First fetch time (required)
Commands (3)
- cyjax-get-indicators — Get indicators.
- cyjax-indicator-sighting — Get sighting of a indicator.
- cyjax-unset-indicators-last-fetch-date — Unset the indicators feed last fetch date. Should only be used if user needs to use `re-fetch` button and wants to fetch old indicators from CYJAX. Next feed will use date set in first_fetch (default is last 3 days).