Cofense Triage¶
Cofense Triage is a tool for accelerating phishing email analysis, investigation, and response by cutting through noise automatically and surfacing real threats faster.
Chronicle Data Types¶
- COFENSE_TRIAGE
Caveats / Known Limitations¶
Cyderes supports collection of reports from Cofense Triage from the V2 API.
Requirements¶
IPs will need to be whitelisted to ensure connectivity with Cyderes and the Cofense Triage instance. For list of IPs, please contact Cyderes.
Configuration¶
The setup for this integration requires configuration of the auth piece necessary for Cyderes to access the Cofense Triage instance. Please reference Cofense's API docs for the desired Cofense Triage instance to setup auth for the V2 API.
Gather Information¶
Provide the following information to Cyderes to complete implementation:
- URL for Cofense Triage instance
- OAuth2 Client ID
- OAuth2 Client Secret