How to integrate Kaspersky Threat Data Feeds with LogRhythm

Latest update: April 26, 2023 ID: 15720
 
 
 
 

Kaspersky CyberTrace allows you to check URLs, file hashes and IP addresses contained in events that arrive in LogRhythm. The URLs, file hashes and IP addresses are checked against threat data feeds from Kaspersky or from other vendors or sources loaded to CyberTrace. During the matching process, Kaspersky CyberTrace determines the indicator category and generates an event supplemented with actionable context.

To install the SIEM connector for LogRhythm:

  1. Download Kaspersky CyberTrace. Find the download files for Kaspersky CyberTrace in this article.
  2. Follow the instructions from Online Help to configure LogRhythm.

The SIEM connector for LogRhythm will be installed.

 
 
 
 
 
Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.