18. Integrations¶
Cyber Triage can integrate with several platforms. This page provides links to the instructions for using them.
18.1. EDRs and Other Agents¶
You can use EDRs and other agent-based systems to deploy the Cyber Triage Collector. Our Collector is very easy to deploy. It’s a single Windows executable.
The agents from an EDR or other tool (such as Velociraptor) can be used to copy the Collector to the endpoint and to launch it.
18.2. SIEMs¶
Cyber Triage can export data that can be imported into Splunk (see All Items JSON Report).
18.3. Other Forensics Tools¶
The output of Cyber Triage can be imported into other tools, such as:
Autopsy (Open a Cyber Triage Incident in Autopsy)
Timesketch (All Items in JSON Line (Timesketch) Report)