Skip to main content

Cisco Secure Malware Analytics

Download With Dependencies

Query and upload samples to Cisco threat grid.

Use this pack to fetch, manage, and query threat feeds and samples.

What does this pack do?

  • The Feed integration fetches indicators from Cisco Secure Malware Analytics (Threat Grid). When setting up this integration, select from which feeds to fetch indicators (for example: modified-hosts-dns, public-ip-check-dns, ransomware-dns, etc.).
  • The Cisco Threat Grid integration enables you to query and upload samples to Cisco's threat grid.
  • The playbooks enable detonating one or more files or URLs. The playbooks return relevant reports to the War Room and file/URL reputations to the context data.

Use this pack to fetch, manage, and query threat feeds and samples.

What does this pack do?

  • The Feed integration fetches indicators from Cisco Secure Malware Analytics (Threat Grid). When setting up this integration, select from which feeds to fetch indicators (for example: modified-hosts-dns, public-ip-check-dns, ransomware-dns, etc.).
  • The Cisco Threat Grid integration enables you to query and upload samples to Cisco's threat grid.
  • The playbooks enable detonating one or more files or URLs. The playbooks return relevant reports to the War Room and file/URL reputations to the context data.

PUBLISHER

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByCortex
CreatedJune 30, 2020
Last ReleaseJune 28, 2026
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
By downloading or using Marketplace content, you agree to the applicable Terms of Use and End User License Agreement. Third-party content is provided by its publisher, and Palo Alto Networks does not warrant, endorse, support, or assume responsibility for content not expressly identified as owned by Palo Alto Networks.