Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Cofense Triage™ enhances the speed at which phishing emails are recognized and dealt with effectively. By leveraging integration and automation, you can significantly reduce your response time. Utilizing Cofense Intelligence™ rules alongside a top-tier spam engine, we automatically detect and assess threats with precision. Our comprehensive read/write API enables you to incorporate intelligent phishing defense seamlessly into your existing workflow, allowing your team to concentrate on safeguarding your organization. We recognize that combating phishing can be complex; therefore, Cofense Triage™ provides immediate access to expert assistance with just a single click, available at any moment. Our Threat Intelligence and Research Teams are dedicated to continuously expanding our collection of YARA rules, facilitating the identification of new campaigns and enhancing your response efficiency. Furthermore, the Cofense Triage Community Exchange empowers you to collaboratively analyze phishing emails and gather threat intelligence, ensuring you're well-supported in your efforts to combat these threats. This collaborative approach not only strengthens your defenses but also fosters a community of shared knowledge and experience.

Description

YARA serves as a resource primarily designed for malware analysts to discover and categorize malware samples effectively. This powerful tool enables users to develop representations of various malware families or other entities by utilizing either textual or binary patterns. Each representation, known as a rule, comprises a collection of strings paired with a boolean expression that dictates its operational logic. Additionally, YARA-CI can enhance your toolkit by offering a GitHub application that facilitates continuous testing of your rules, which aids in detecting frequent errors and minimizing false positives. In essence, the specified rule directs YARA to flag any file that contains one of the three designated strings as a silent_banker, thereby streamlining the identification process. By incorporating YARA and YARA-CI, researchers can significantly improve their malware detection capabilities and overall efficiency in their work.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Anomali Yes 
Betterscan.io No 
Chronicle SOAR Yes 
Cisco Umbrella Yes 
Filigran No 
Libraesva Email Security Yes 
LimaCharlie No 
LogRhythm SIEM Yes 
OpenText Content Management (Extended ECM) Yes 
Palo Alto Networks AutoFocus Yes 
SentinelOne Singularity Yes 
Splunk Enterprise Yes 
Symantec Network Forensics No 
Tenzir No 
Threat.Zone No 
Trellix Endpoint Security (HX) Yes 
Trend Micro Web Security Yes 
Uptycs No 
Vizit Yes 

Integrations

Anomali No 
Betterscan.io Yes 
Chronicle SOAR No 
Cisco Umbrella No 
Filigran Yes 
Libraesva Email Security No 
LimaCharlie Yes 
LogRhythm SIEM No 
OpenText Content Management (Extended ECM) No 
Palo Alto Networks AutoFocus No 
SentinelOne Singularity No 
Splunk Enterprise No 
Symantec Network Forensics Yes 
Tenzir Yes 
Threat.Zone Yes 
Trellix Endpoint Security (HX) No 
Trend Micro Web Security No 
Uptycs Yes 
Vizit No 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based No 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) Yes 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

Cofense

Founded

2011

Country

United States

Website

cofense.com/product-services/cofense-triage/

Vendor Details

Company Name

YARA

Website

virustotal.github.io/yara/

Product Features

Incident Response

Attack Behavior Analytics No 
Automated Remediation No 
Compliance Reporting No 
Forensic Data Retention No 
Incident Alerting No 
Incident Database No 
Incident Logs No 
Incident Reporting No 
Privacy Breach Reporting No 
SIEM Data Ingestion / Correlation No 
SLA Tracking / Management No 
Security Orchestration No 
Threat Intelligence No 
Timeline Analysis No 
Workflow Automation No 
Workflow Management No 

Product Features

Alternatives

Alternatives

THOR Reviews

THOR

Nextron Systems