cudeso / misp2sentinel

MISP to Sentinel integration
MIT License
53 stars 17 forks source link

Consider adding code to upload indicators to Defender #44

Closed cudeso closed 2 weeks ago

cudeso commented 12 months ago

https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/post-ti-indicator?view=o365-worldwide

lnfernux commented 11 months ago

Isn't this supported by Graph API still for Defender?

cudeso commented 11 months ago

Right, have to check this or if Graph API is also replaced for Defender.

lnfernux commented 7 months ago

It's not at the moment, so the old version of the script still works for this.