How to integrate Kaspersky Threat Data Feeds with LogRhythm
Kaspersky CyberTrace is an application set that allows you to check URLs, file hashes, and IP addresses contained in events that arrive in LogRhythm. The URLs, file hashes, and IP addresses are checked against Threat Data Feeds from Kaspersky, and their categories and actionable context are determined in the process.
To install the SIEM connector for LogRhythm:
- Download Kaspersky CyberTrace. Find the download files for Kaspersky CyberTrace in this article.
- Follow the instructions in the product documentation to install the package.