Configure Threat Lookup
Scan selected observables for malware using Threat Intelligence to determine if they are malicious. Use this lookup to assess security threats from IP addresses, URLs, file hashes, and other observable types.
Before you begin
Role required: sn_sec_tisc.admin
Note:
The Enrichment Integrations module appears only if at least one integration supporting any capability is installed in the application.
The Threat Intelligence Security Center supports Threat Lookup only for the following integrations:
- VirusTotal
- CrowdStrike Intelligence
About this task
The Threat Lookup section contains only the integrations with the integration type as threat lookup.
This section displays cards for each of the configured integration implementations that you can activate and use.