Skip to main content

Carbon black Protection Rapid IOC Hunting

This Playbook is part of the Carbon Black Enterprise Protection Pack.#

Hunts for endpoint activity involving hash and domain IOCs, using Carbon black Protection (Bit9).

Dependencies#

This playbook uses the following sub-playbooks, integrations, and scripts.

Sub-playbooks#

This playbook does not use any sub-playbooks.

Integrations#

This playbook does not use any integrations.

Scripts#

  • Exists
  • CBPFindRule
  • CBPCatalogFindHash

Commands#

This playbook does not use any commands.

Playbook Inputs#


There are no inputs for this playbook.

Playbook Outputs#


There are no outputs for this playbook.

Playbook Image#


Carbon_black_Protection_Rapid_IOC_Hunting