0 Replies Latest reply on Nov 29, 2017 6:32 AM by andres.more

    Threat Hunting using Threat Intelligence Exchange

    andres.more

      This is a sample playbook that shows how to leverage McAfee Threat Intelligence Exchange (TIE) towards threat hunting.

      It details how to support workflows inside McAfee ePolicy Orchestrator (ePO) that starts from a file-related threat event or a dashboard, continues gathering contextual information thru pivoting and closes disseminating updated local reputation.

       

      InvestigationPlaybookSpec/SamplePlaybooks/playbooks/ThreatHuntingUsingThreatInte lligenceExchange at tie-playbook · morea…