SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Can phishing catalog support .msg file type?

Hi All, Currently, the phishing catalog can process information only from .eml file types. Is there a possibility or option to enable support for .MSG file types as well? Has anyone implemented this before, or could you share any suggestions or guida...

Venkatesh4 by Tera Expert
  • 319 Views
  • 1 replies
  • 0 helpfuls

Consistently failing NIST NVD Unmapped CPE integration.

Hello Community, I am trying to run the NIST National Vulnerability Database Integration - API (Unmapped CPE) but it is failing with the error message 'Attempting retry with process VINTPRC00******. Error: Invalid response code received from NVD: 403...

GudiyaYadav by Tera Contributor
  • 1018 Views
  • 1 replies
  • 0 helpfuls

Resolved! Changing the default risk score scale for risk ratings.

Hello, Does anyone know where I would go to adjust the risk score rating scale? Say if my employer want a risk score of 60 and above to be critical (just an example), where would I adjust the scale to say risk score 60-100 should = critical?

dan167 by Tera Guru
  • 1498 Views
  • 6 replies
  • 2 helpfuls

How to Specify Conditions in Vulnerability Calculation Rule Scripts

We would like to calculate the value of the [Risk score] column of Vulnerable Items[sn_vul_vulnerable_item] using the Vulnerability Calculator Rules[sn_vul_calculator].We want to calculate it.We would like to set the conditions and values in the [Whe...

akie_1-1734487337678.png
akie by Tera Contributor
  • 535 Views
  • 2 replies
  • 1 helpfuls

Resolved! Assignment rules - multiple support groups

Hello!I have a tricky situation and not sure how to solve this. I have Vulnerable Items for servers (Windows and Linux), which it should be assigned to related CI Service support groups, this assignment rule I have, but there is also a condition, tha...

Crowdstrike Endpoint integration

Is any other way to filter the endpoint alerts that come in so that security incidents are only created for certain alert types besides altering the scripts? Are there alert rules or something we can configure to get this to work without updating the...