Google Chronicle

Google Chronicles™ is integrated with LogScale through two packages:

  • Google Chronicle Alerts package which parses and visualizes alert data from the Chronicle Search API allowing you to Chronicle alerts by hostname, severity, and source and visualize the most recent alerts, file hashes and names associated with alerts, and the event types associated with alerts, such as process starts or network connections. For more information see the package Readme.md.

  • Google Chronicle IOC package which parses and visualizes IOC data from the Chronicle Search API, allowing you to view Chronicle IOCs by domain name, severity, source, and category. You can also visualize the most recent IOCs and IOC activity over time. See the package Readme.md for more information.