- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎02-02-2022 10:47 AM
Hi, I had a customer ask me about using the file attachment function for a malicious file... they are wondering if we can get the information from the file without actually storing it. Their concern was someone opening the file and unleashing bad stuff. They want to keep the actual file out of the environment. Does anyone have insight here? Thank you,
Nancy
Solved! Go to Solution.
- Labels:
-
Security Incident Response
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎02-02-2022 11:00 AM
Hi Nancy,
The Secure File Attachment feature in Security Incident Response may help:
https://docs.servicenow.com/bundle/rome-security-management/page/product/security-incident-response/task/manage-file-observables.html
I believe these lookups happen when you use the related UI action illustrated on that page!
Alex
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
‎02-02-2022 11:00 AM
Hi Nancy,
The Secure File Attachment feature in Security Incident Response may help:
https://docs.servicenow.com/bundle/rome-security-management/page/product/security-incident-response/task/manage-file-observables.html
I believe these lookups happen when you use the related UI action illustrated on that page!
Alex