https://store-images.s-microsoft.com/image/apps.6602.2c701dfe-aad0-4a54-bc0c-6900b830b226.b364f9e3-4b60-4497-90b0-f9077e2a82ea.77f01abf-8a6d-4c5f-be78-b9de02bc5032

ReversingLabs Scanner for Microsoft Defender

ReversingLabs

ReversingLabs Scanner for Microsoft Defender

ReversingLabs

Enrich security incidents in Microsoft Defender with file-based threat intelligence

Solution Overview

This advanced solution significantly enhances the experience of Security Operations Center (SOC) analysts working within the Microsoft Defender incident interface. By offering valuable threat intelligence information related to file hash entities, analysts are better equipped to identify and respond to potential security threats effectively. This enhancement provides a crucial layer of insight and analysis, empowering SOC analysts to make informed decisions and take proactive measures in safeguarding the security of the systems they oversee.

By leveraging the Microsoft Defender Streaming API, this solution seamlessly integrates file analysis data from ReversingLabs Spectra Core, the most extensive collection of goodware and malware files of over 40 billion searchable samples and 385 billion file hashes. As soon as an incident is triggered, this integration ensures that analysts aren't waiting around for sandbox detonations by rapidly presenting comprehensive insights into the characteristics of the files involved, including malware classification status, threat names, interesting strings found in the file during analysis such as domain names and IP addresses, and MITRE ATT&CK tactics and techniques.


Prerequisites

  • Valid credentials for ReversingLabs Spectra Intelligence and/or Spectra Analyze are required to use this solution.


Installation Guide

Download and following the installation guide here: Installation guide



https://store-images.s-microsoft.com/image/apps.13750.2c701dfe-aad0-4a54-bc0c-6900b830b226.b92a6b88-ab6f-4930-b01f-76c4eab9f570.9016800a-7bd1-4ab1-aa40-3fe675af5d2b
https://store-images.s-microsoft.com/image/apps.13750.2c701dfe-aad0-4a54-bc0c-6900b830b226.b92a6b88-ab6f-4930-b01f-76c4eab9f570.9016800a-7bd1-4ab1-aa40-3fe675af5d2b
https://store-images.s-microsoft.com/image/apps.62330.2c701dfe-aad0-4a54-bc0c-6900b830b226.b92a6b88-ab6f-4930-b01f-76c4eab9f570.30af5626-b349-4bb1-bb83-83e8c60a784a
https://store-images.s-microsoft.com/image/apps.62292.2c701dfe-aad0-4a54-bc0c-6900b830b226.b92a6b88-ab6f-4930-b01f-76c4eab9f570.6aacade7-a63e-4274-9f34-474b39bfd3bb