[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Hard to understand","hardToUnderstand","thumb-down"],["Incorrect information or sample code","incorrectInformationOrSampleCode","thumb-down"],["Missing the information/samples I need","missingTheInformationSamplesINeed","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-09-04 UTC."],[[["\u003cp\u003eCyberX, now integrated with Azure Security Center for IoT after being acquired by Microsoft, can be configured within Google Security Operations SOAR.\u003c/p\u003e\n"],["\u003cp\u003eThe "Enrich Endpoints" action retrieves detailed information about endpoints, running specifically on the IP Address entity.\u003c/p\u003e\n"],["\u003cp\u003eThe "Get Alerts" action fetches a comprehensive list of alerts detected by XSense, and it can be applied to all entities.\u003c/p\u003e\n"],["\u003cp\u003eThe "Get Device Vulnerability Report" action provides vulnerability information for each endpoint and operates on both IP Address and Hostname entities.\u003c/p\u003e\n"],["\u003cp\u003eThe "Ping" action tests connectivity with CyberX and functions on all entities.\u003c/p\u003e\n"]]],[],null,["# CyberX\n======\n\nIntegration version: 4.0\n| **Important:** CyberX was acquired by Microsoft and integrated with Azure Security Center for IoT.\n\nConfigure CyberX integration in Google Security Operations\n----------------------------------------------------------\n\nFor detailed instructions on how to configure an integration in\nGoogle SecOps, see [Configure\nintegrations](/chronicle/docs/soar/respond/integrations-setup/configure-integrations).\n\nActions\n-------\n\n### Enrich Endpoints\n\n#### Description\n\nFetch details about the endpoints.\n\n#### Parameters\n\nN/A\n\n#### Use cases\n\nN/A\n\n#### Run on\n\nThis action runs on the IP Address entity.\n\n#### Action results\n\n##### Entity enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script result\n\n##### JSON result\n\n N/A\n\n### Get Alerts\n\n#### Description\n\nFetch a list of all alerts XSense detects.\n\n#### Parameters\n\nN/A\n\n#### Use cases\n\nN/A\n\n#### Run on\n\nThis action runs on all entities.\n\n#### Action results\n\n##### Entity enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script result\n\n##### JSON result\n\n N/A\n\n### Get Connection for Endpoint\n\n#### Description\n\nGet a list of each device's connections.\n\n#### Parameters\n\nN/A\n\n#### Use cases\n\nN/A\n\n#### Run on\n\nThis action runs on the IP Address entity.\n\n#### Action results\n\n##### Entity enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script result\n\n##### JSON result\n\n N/A\n\n### Get Device Vulnerability Report\n\n#### Description\n\nFetch a report on vulnerabilities for each endpoint.\n\n#### Parameters\n\nN/A\n\n#### Use cases\n\nN/A\n\n#### Run on\n\nThis action runs on the following entities:\n\n- IP Address\n- Hostname\n\n#### Action results\n\n##### Entity enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script result\n\n##### JSON result\n\n N/A\n\n### Get Events\n\n#### Description\n\nFetch a list of reported events in the event log.\n\n#### Parameters\n\nN/A\n\n#### Use cases\n\nN/A\n\n#### Run on\n\nThis action runs on the Events entity.\n\n#### Action results\n\n##### Entity enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script result\n\n##### JSON result\n\n N/A\n\n### Ping\n\n#### Description\n\nTest CyberX connectivity.\n\n#### Parameters\n\nN/A\n\n#### Use cases\n\nN/A\n\n#### Run on\n\nThis action runs on all entities.\n\n#### Action results\n\n##### Entity enrichment\n\nN/A\n\n##### Insights\n\nN/A\n\n##### Script result\n\n##### JSON result\n\n N/A\n\n**Need more help?** [Get answers from Community members and Google SecOps professionals.](https://security.googlecloudcommunity.com/google-security-operations-2)"]]