XDR - Investigate - Inspect for Observables
Details
This atomic belongs to the Cisco XDR: Investigate atomic group.
Uses the Cisco XDR API to inspect content for observables. You can provide free-form text with observables in it to this atomic and it will return a JSON-formatted list of observables.
Target: Platform APIs
Steps:
[] Build the payload to send to the inspect API
[] Check if the request was successful:
[]> If it was, set the output variable
[]> If it wasn't, return an error
More information about this API: https://developer.cisco.com/docs/cisco-xdr/find-observables/
About
Authorship
Cisco Managed