About the Device
Abnormal Inbound Email Security stops advanced attacks with a fundamentally different approach. Abnormal uses behavioral AI and ML models to stop the full spectrum of email attacks.
Baselines known good behavior across employees and vendors with an AI-based anomaly detection engine.
Offers explainable attack insights with in-depth reviews referencing email forensics like the location and timing, frequency of communication, topic and tone, and intent of the email attack.
Deploys in minutes via API. No configuration or policies required.
Monitors each vendor for risk indicators and automatically adapts protection to block attacks from compromised partners.
Device Information
Entity | Particulars |
---|---|
Vendor Name | Abormal Security |
Product Name | Inbound Email Security |
Type of Device | Cloud |
Collection Method
Log Type | Ingestion label | Preferred Logging Protocol | Log Collection Method | Data Source |
---|---|---|---|---|
Abnormal Security | ABNORMAL_SECURITY | API-Pull | CyberHub | https://app.swaggerhub.com/apis/abnormal-security/abx/1.4.0 |
Device Configuration
Complete these integration steps to get your API access token:
Log in to the Abnormal Portal.
Click Settings in the left navigation menu.
Click Integrations in the settings menu.
Scroll down to the Additional Integrations section and click Connect on the Abnormal REST API card to display an integration page for your organization.
The integration page displays a unique API access token. Please copy and share it with AMxDR.
In the IP Safelist field, enter the <CYBERHUB_IP> Address from where API call are being made.
Integration Parameters
Parameters required from customer for Integration.
Property | Default Value | Description |
---|---|---|
URL |
| Common URL for all customer |
Customer Name | <EMPTY> | Name of the Customer to identify Origin |
API Token | <EMPTY> | API Token provided by customer in device configuration |