← Go back to library

Enrich CrowdStrike incidents with VirusTotal & send to TheHive

Get CrowdStrike endpoint detections and create alerts in TheHive. Then, enrich any IPs, domains, and hashes with Virustotal and add them to the alert as observables.

Created by

Conor Dunne

How it works

Import this story to your tenant, from where you can adapt it to meet your unique needs.

Import
Was this story helpful?