⚠️ CofenseIntelligence

⚠️ Unpublished: This item is from a solution that is not yet published on Azure Marketplace or not installed in Content Hub.

CofenseIntelligence Logo

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Solutions Index


Attribute Value
Publisher Cofense Support
Support Tier Partner
Support Link https://cofense.com/contact-support/
Categories domains
Version 3.0.0
Author Cofense - support@cofense.com
First Published 2023-05-26
Last Updated 2024-05-26
Solution Folder CofenseIntelligence

The Cofense-Intelligence solution provides the capability to ingest Threat Indicators from the Cofense Intelligence platform to Threat Intelligence Indicators in Microsoft Sentinel and Cofense Intelligence Threat Intelligence Indicators from Microsoft Sentinel Threat Intelligence to Microsoft Defender for Endpoints.

Underlying Microsoft Technologies used:

This solution takes a dependency on the following technologies, and some of these dependencies either may be in

Underlying Microsoft Technologies used:

This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

a.Azure Monitor HTTP Data Collector API

b.Azure Functions

c.Microsoft Threat Intelligence Indicator API

Contents

Data Connectors

This solution provides 1 data connector(s):

🔶 CLv1: This connector ingests into a table that uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Tables Used

This solution uses 2 table(s):

Table Used By Connectors Used By Content
Malware_Data_CL 🔶 Cofense Intelligence Threat Indicators Ingestion Workbooks
ThreatIntelligenceIndicator Cofense Intelligence Threat Indicators Ingestion Workbooks

🔶 CLv1: This table uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g. _s, _d, _b, _t, _g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.

Content Items

This solution includes 1 content item(s):

Content Type Count
Workbooks 1

Workbooks

Name Tables Used
CofenseIntelligenceThreatIndicators Malware_Data_CL
ThreatIntelligenceIndicator

Release Notes

Version Date Modified (DD-MM-YYYY) Change History
3.0.0 10-12-2022 Initial Solution Release

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Solutions Index