Details

This atomic belongs to the Cisco XDR: Intelligence atomic group.

Searches for indicators in your Cisco XDR private intelligence store.

Target: Private Intelligence API

Steps:
[] Build the query string for the search
[] Request indicators from Cisco XDR
[] Check if the request was successful:
[]> If it was, extract the result count header and set the output variables
[]> If it wasn't, return an error

More information about this API: https://developer.cisco.com/docs/cisco-xdr/private-intelligence-api-indicator-search-for-indicator-entities-using-a-es-query-syntax-and-field-filters/

About
Authorship
Cisco Managed