Zerohack XDR
The companion integration for Zerohack XDR. Current versions allow the user to collect data from the XDR and later versions will support data exfiltration to XDR.
- Category
- Network Security
- Pack
- Zerohack_XDR
Configuration parameters
- isFetch — Fetch incidents
- incidentType — Incident type
- max_fetch — Maximum number of incidents per fetch
- apikey — Zerohack XDR API Key (required)
- first_fetch — First fetch time
- insecure — Trust any certificate (not secure)
- incidentFetchInterval — Incidents Fetch Interval (required)
- min_severity — Minimum Severity (required)
Commands (1)
- zerohack-get-latest-incident — Fetch a single incident of your choice of severity level to study the incidents structure before you start continously fecthing incidents.