Details

This atomic belongs to the Cisco XDR: Intelligence atomic group.

Searches for sightings in your Cisco XDR private intelligence store.

Target: Private Intelligence API

Steps:
[] Build the query string for the search
[] Request sightings from Cisco XDR
[] Check if the request was successful:
[]> If it was, extract the result count header and set the output variables
[]> If it wasn't, return an error

More information about this API: https://developer.cisco.com/docs/cisco-xdr/private-intelligence-api-sighting-search-for-sighting-entities-using-a-es-query-syntax-and-field-filters/

About
Authorship
Cisco Managed