Iterate through Code42 alerts. Explode alert details, convert data to JSON, and deduplicate alerts. Extract file categories and names from observation data. Retrieve user agents and device IDs to contain compromised CrowdStrike endpoints.
How it works
Import this story to your tenant, from where you can adapt it to meet your unique needs.
Import