首页 扩展程序 FireEye iSIGHT Browser Extension

FireEye iSIGHT Browser Extension

提供方: iSight Partners
15
搜索工具 1,076 位用户

插件简介

Finds IPs, Domains, MD5, SHA256, SHA1, fuzzy hashes and file names in web pages and matches to FireEye iSIGHT intelligence
The Browser Extension will enable all customers to connect the data that they’re viewing in their web browser, regardless of the tool or site, to the full intelligence context provided by FireEye. This will allow customers to connect to FireEye intelligence context from Internet databases, such as VirusTotal or WHOIS, which otherwise was not possible to integrate.

You'll need to enter your FireEye iSIGHT API 2.0 credentials/keys to make the plugin operational. For that you'll have to right click on the icon & select "Options" which will then open a dialog where you'll have to enter your credentials/keys.

Clicking on the icon will detect IP addresses, domains & file hashes etc. on a displayed web page. It will parse the entire webpage or just the selection for the observables/indicators and will highlight them. Parsing of the entire webpage or just the selection is based on the configuration in the option dialog.

After that it will match the observables/indicators with FireEye iSIGHT API 2.0 interface and highlight the ones that are matched. On mouse over of these matched observables/indicators, FireEye icon will appear which when clicked will call to FIIP in order to allow customers quick access to our intelligence for context around whatever issue they are investigating.

Also you have the option to just directly select the observable/indicator and redirect it to FIIP.

If the indicator/observable is matched to any one report then the clicking on the FireEye icon will take you to that particular report directly. Or else if it is matched in more than one report then you'll get redirected to the FIIP search page.

其他信息

ID ajdhfcoppbpocmaeoechanfllkoemlhi 版本 1.3.0 上次更新日期 2018年10月15日 大小 81.29KiB 语言 支持1 种语言 适用浏览器

谷歌浏览器、其他Chromium内核的浏览器

FireEye iSIGHT Browser Extension Chrome插件下载

为打击盗链困扰,本站已启用人机验证
微信扫码关注左侧公众号,发送“插件”二字获得验证码,验证码5分钟全站有效