How to integrate Kaspersky Threat Data Feeds with AlienVault USM / OSSIM

 

Kaspersky Threat Data Feeds

 
 
 
 

How to integrate Kaspersky Threat Data Feeds with AlienVault USM / OSSIM

Back to article list
Latest update: August 07, 2019 ID: 15161
 
 
 
 

We recommend that you integrate Kaspersky Threat Data Feeds with AlienVault USM / OSSIM by using Kaspersky CyberTrace.

Kaspersky CyberTrace for AlienVault USM / OSSIM (SIEM connector) allows you to check URLs, file hashes, and IP addresses contained in events that arrive in AlienVault USM / OSSIM. The URLs, file hashes, and IP addresses are checked against threat data feeds from Kaspersky Lab, or from other vendors or sources loaded to CyberTrace. During the matching process, Kaspersky CyberTrace determines the indicator category and generates an event supplemented with actionable context.

To integrate Kaspersky Threat Data Feeds using Kaspersky CyberTrace with AlienVault USM / OSSIM:

  1. Download and install Kaspersky CyberTrace for LogScanner.
  2. Configure Kaspersky CyberTrace for integration with AlienVault USM / OSSIM.
  3. Configure AlienVault USM / OSSIM to forward events to Kaspersky CyberTrace.
  4. Add Kaspersky CyberTrace event source to AlienVault USM / OSSIM.

After doing this, you can browse CyberTrace events that contain actionable information from Kaspersky Threat Data Feeds, as well as from other vendors or sources, in AlienVault USM / OSSIM. You can then use this information to identify existing breaches or newly launched attacks and inform your business or clients about the risks and implications associated with them.

Download this guide for detailed instructions on integrating Kaspersky Threat Data Feeds with AlienVault USM / OSSIM.

Download the integration materials: kaspersky_cyberTrace.zip

 
 
 
 
Was this information helpful?
Yes No
Thank you
 
 
 

 
 

How can we improve this article?

Your feedback will be used for content improvement purposes only. If you need assistance, please contact technical support.

Submit Submit

Thank you for your feedback!

Your suggestions will help improve this article.

OK