infobyte / faraday_plugins

Security tools report parsers for Faradaysec.com
https://www.faradaysec.com/
GNU General Public License v3.0
50 stars 18 forks source link

Add Defender for Endpoint Vulnerability as Source / Plugin #23

Closed toellbe closed 1 year ago

toellbe commented 1 year ago

It would be great Microsoft Defender for Endpoint can used as data source of software vulnerabilities.

https://github.com/MicrosoftDocs/microsoft-365-docs/blob/public/microsoft-365/security/defender-endpoint/get-all-vulnerabilities-by-machines.md

fedek commented 1 year ago

Hey @toellbe

Thanks for the recommendation, seems like a great idea! To make things easier: do you have a sample file that you could share with us?

best!

toellbe commented 1 year ago

@fedek you will find an api response example following the link in my previous post:

https://github.com/MicrosoftDocs/microsoft-365-docs/blob/public/microsoft-365/security/defender-endpoint/get-all-vulnerabilities-by-machines.md

Jannik1228 commented 1 year ago

@fedek Is there a update on this topic? If or when it is planned to implement this plugin?

gmartinez95 commented 1 year ago

Hi @Jannik1228, in the last release a Windows Defender's plugin was added. Feel free to try it and give us your feedback.