Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

TISC Library Objects form view

The Threat Intelligence Security Center objects home page consists of the following features.

Use or navigate to these following sections and learn more about each SDOs in detail.

Image omitted: tisc-home-page-view.png
TISC Objects home page view
OrderMenu/TabDescription
1Details tabUse this section to view or edit the SDOs in the form view.
2Source Records tabSource records contribute to an aggregated record as displayed in the form view. These source records are auto created from feeds or manually created by the user.
3Related Records tabLists all the related records associated with the SDO.
4Relationship Graph tabVisual representation of the related objects.
5Internal Intelligence tabLists the internal intelligence records of the associated objects.
6Enrichment Results tabLists the enrichment integrations associated with the objects.
7Form bannerThis is read-only section, which contains the key fields such as Type, Confidence, Threat score, Number of Sightings, Status and Expiration time.
8Form banner UI actions

These are the security control lists that are available for you to click if they are needed to be added to the allow list, removed from the allow list (Deny list), or add it to the watch list based on the observables. Click to:- add to watch list - add to deny list - add to allow list

Note: The Form actions are applicable only to Observables.

9Form UI actionsThe available form UI actions are:1. Add to Case: Add the objects to the case. 2. Run Observable Enrichment: Run the enrichments to the selected objects. 3. Save: Save the record. 4. Delete: Delete the record.
10Right Contextual menu

Provides easy access to the quick controls such as attachments, notes, and so on, based on the tasks associated with that object. This option is available across the remaining two tabs for the threat analyst to access whenever required.The contextual menu provides easy navigation to:

  1. Attachments: Attach any file that are related to the objects.

Note: Whenever you either create a new observable, indicators, or any objects or view the existing objects, the Attachments pane is by default displayed on the respective form view. You can either click the Attachments icon on the right-contextual menu or go to Preferences > Workspaces and disable the Show the sidebar. For more information, see Configure Next Experience Workspace preferences.

  1. Insights: Add any additional information related to the observables or indicators which are associated with that object.
NASearch in NavigatorUse this search function to search for various objects within the Threat Intel \(TI\) library. For example, you can search for all observables records within the TI library module.
NASearch in Threat Intel LibraryUse this search function to search for the source records across multiple sources based on your search criteria. The results will be displayed in a separate Search Results tab. For example, for an IP address 104.227.137.35, if you need to search the records, by entering 104.* then searching will narrowed down the records and displays the records that contains the IP address starting with 104 in the separate Search Results tab. - You can also modify the existing search keywords in the Search Criteria on the same Search Results page without going back to the Threat Library page. - Similarly, you can also search based on the name and description of any particular record. - Once the records are filtered and listed, you can click on the list view which will take you to the respective record in a new tab.

Parent Topic:Threat Intel Library

Related topics

TISC Data Model

TISC Library Repository

Access Vulnerability Downstream actions

Deleting threat intelligence library records

Export intelligence data

Confirm Potential Relationships from Related Records

Automated Correlation