Enrich your alerts with AbuseIPDB

Many of you have asked for it, it is now available!

abuseipdb.png.pagespeed.ce.CI8T6WsXU7.png

This new playbook let you manually enrich your XDR alerts directly in the comments, with data from https://www.abuseipdb.com/. AbuseIPDB is a project managed by Marathon Studios Inc. They provide a crowdsourced list of malicious IPs.

Capture d’écran 2022-07-20 à 14.23.35.png

As usual, this enrichment can be deployed in 3 clicks with our catalog of playbooks templates. The only thing you need is an AbuseIPDB API key, so let’s automate your alerts workflow!

What do you think about this update?