Brazil, Australia, Zurich, Yokohama
Integration
OPSWAT Metadefender is a service that analyzes IP addresses, file hashes, and URLs to facilitate quick detection of malicious activity. The Metadefender integration for Security Operations enables the analysis of artifacts involved in security incidents through automated threat lookups.
OPSWAT Metadefender Integration is now available only on the ServiceNow® Store.
- Threat lookup workflows run on selected observables upon incident creation.
- Execution and Completion status of the workflow is recorded in work notes.
- Reputation results are available in the related list of Threat lookup results.
Fixed :
- File Lookup Polling: Fixed an issue where continuous polling did not continue for file lookups, causing the lookup to remain in a Waiting state even when the process percentage had reached 0%.
- Incorrect Error State: Fixed an issue where the lookup state was hardcoded to "Error" when IP or Hash lookups returned an error code, ensuring the state now reflects the actual lookup response.
- Missing Success Status Message: Fixed an issue where the status message was empty for successful IP and Hash lookups. Successful lookups now display the appropriate status message.
Not applicable for this application version.
Before using the OPSWAT Metadefender integration, you must install the app and configure the integration. If necessary, you can also update your X509 SSL certification.
This integration requires the Threat Core and Threat Intelligence applications to be installed.