# NG SIEM - Abusech Integration

<span style="color: rgb(0, 0, 0);">This integration is designed to collect and process **AbuseCH threat intelligence logs**. It retrieves indicators from multiple AbuseCH APIs and makes them available for security monitoring and analysis.</span>

## <span style="color: rgb(53, 152, 219);">Supported Datasets</span>

<span style="color: rgb(0, 0, 0);">The integration provides the following datasets:</span>

- <span style="color: rgb(0, 0, 0);">**URL Dataset**</span>
    
    
    - <span style="color: rgb(0, 0, 0);">Retrieves **URL-based indicators** from the AbuseCH API.</span>
    - <span style="color: rgb(0, 0, 0);">Data source: <span style="color: rgb(132, 63, 161);">[URLhaus API Documentation](https://urlhaus-api.abuse.ch/)</span></span>
- <span style="color: rgb(0, 0, 0);">**Malware Dataset**</span>
    - <span style="color: rgb(0, 0, 0);">Retrieves **malware-based indicators** from the AbuseCH API.</span>
- <span style="color: rgb(0, 0, 0);">**MalwareBazaar Dataset**</span>
    
    
    - <span style="color: rgb(0, 0, 0);">Retrieves indicators from **MalwareBazaar**, a community-driven project hosted by AbuseCH.</span>

### <span style="color: rgb(53, 152, 219);">URL Logs</span>

<span style="color: rgb(0, 0, 0);">The **AbuseCH URL data stream** fetches threat intelligence indicators from the following API endpoint:</span>

```
https://urlhaus-api.abuse.ch/v1/urls/recent/
```

<span style="color: rgb(0, 0, 0);">This stream provides details on recently observed malicious URLs that can be used for detection, correlation, and blocking in security systems.</span>

<span style="color: rgb(0, 0, 0);">*<span class="TextRun SCXW71272603 BCX0" data-contrast="auto" lang="EN-US" xml:lang="EN-US"><span class="NormalTextRun SCXW71272603 BCX0">If you need further </span><span class="NormalTextRun SCXW71272603 BCX0">assistance</span><span class="NormalTextRun SCXW71272603 BCX0">, kindly contact </span></span><span style="color: rgb(53, 152, 219);">**<span class="TextRun SCXW71272603 BCX0" data-contrast="none" lang="EN-US" xml:lang="EN-US"><span class="NormalTextRun SCXW71272603 BCX0">support@cytechint.com</span></span>**</span><span class="TextRun SCXW71272603 BCX0" data-contrast="auto" lang="EN-US" xml:lang="EN-US"><span class="NormalTextRun SCXW71272603 BCX0"><span style="color: rgb(53, 152, 219);"> </span>for prompt </span><span class="NormalTextRun SCXW71272603 BCX0">assistance</span><span class="NormalTextRun SCXW71272603 BCX0"> and guidance.</span></span><span class="EOP SCXW71272603 BCX0" data-ccp-props="{}"></span>*</span>