About 20 results
Open links in new tab
  1. Ingesting Alien Vault OTX Threat Indicators into Azure Sentinel

    Jan 3, 2020 · While this blog is specifically about using AlienVault OTX, one could use this same methodology with most any API based data source. What is OTX? OTX is an open community …

  2. AlienVault OTX TAXII Feed | Microsoft Community Hub

    Nov 11, 2020 · AlienVault OTX TAXII Feed Hi everyone. I am trying to integrate AlienVault's OTX TAXII feed as a data connector, and I keep getting "unexpected" errors. Has anyone had success with this …

  3. Sentinel Taxii connector | Microsoft Community Hub

    Mar 8, 2023 · Sentinel Taxii connector Hi Everyone, I was experimenting trying to connect Sentinel to Alienvault OTX via the Taxii connector to see if it's worth looking into some extra feeds. Nothing I try …

  4. Cannot add Taxii Connector to my workspace | Microsoft Community …

    May 17, 2021 · Tryring to add the Taxii connector to my Workspace. Here is what I did: -> Portal -> Sentinel -> Select my workspace -> Select Data Connectors -> Select the "Thread Intelligence - Taxii …

  5. How to use Azure Sentinel for Incident Response, Orchestration and ...

    Apr 8, 2021 · The goal here is to import threat intelligence feeds from AlienVault OTX platform to enrich logs stored in Azure Sentinel Why it’s important: is there recent intelligence that suggests an URL or …

  6. Threat Intelligence Indicators in Microsoft Sentinel | Microsoft ...

    Aug 9, 2022 · Such kinds of playbooks require minor configuration and can be deployed from GitHub. The third way for adding TI indicators is flat file import. This feature is currently in Private Preview …

  7. Using Threat Intelligence in your Jupyter Notebooks

    Sep 30, 2019 · This can be queried using the msticpy TILookup class alongside other providers such as VirusTotal, AlienVault OTX, and IBM XForce. Here's an example, looking up a single observable. In …

  8. Import Anomali ThreatStream Feed into Microsoft Sentinel

    Jun 29, 2022 · Microsoft Sentinel is a cloud native SIEM that offers various options to import threat intelligence data and use them for hunting, investigation, analytics etc. Some of the ways to import …

  9. Threat Intelligence - Taxii Server with OTX feeds | Microsoft …

    Jul 26, 2021 · I am attempting to use the (preview) Threat intel with OTX feeds.  I have a OTX api key, username and Collection ID #. However when I attempt to...

  10. Microsoft defender API | Microsoft Community Hub

    Microsoft defender API Hello community, I have one question. We are using alienvault otx to get IOC of domains/IP's. It's huge data and every platform will have some limitations of blocking these IOC's. …