The Investigation Insights – BinaryEdge integration searches BinaryEdge for IPs, domains and emails, and provides context from BinaryEdge’s vast dataset, allowing analysts to get a complete picture of what is happening with an IP on the internet.
Examples
BinaryEdge Data Overview
- Summary Tags: When running a search analysts can quickly understand the number of events that an indicator in BinaryEdge is associated with.
- Events: When drilling into the information for the Investigation Insights – BinaryEdge integration, analysts will be able to quickly see all of the different events that are associated. Letting them know what the target is, port and protocol.
- Origin Information: For each different event the analysts can quickly get the origin information of the event as well, getting context on where it originated from, what module it used and the origin country.
- Result Details: Analysts will also be able to understand the results of a scan and learn if a port is still open, and what services were run.
