← Go back to library

Triage Code42 alerts in Slack with CrowdStrike response

Iterate through Code42 alerts. Explode alert details, convert data to JSON, and deduplicate alerts. Extract file categories and names from observation data. Retrieve user agents and device IDs to contain compromised CrowdStrike endpoints.

How it works

Import this story to your tenant, from where you can adapt it to meet your unique needs.

Import
Was this story helpful?