⚠️ Unpublished: This item is from a solution that is not yet published on Azure Marketplace or not installed in Content Hub.
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
| Attribute | Value |
|---|---|
| Publisher | Cofense Support |
| Support Tier | Partner |
| Support Link | https://cofense.com/contact-support/ |
| Categories | domains |
| Version | 3.0.0 |
| Author | Cofense - support@cofense.com |
| First Published | 2023-05-26 |
| Last Updated | 2024-05-26 |
| Solution Folder | CofenseIntelligence |
The Cofense-Intelligence solution provides the capability to ingest Threat Indicators from the Cofense Intelligence platform to Threat Intelligence Indicators in Microsoft Sentinel and Cofense Intelligence Threat Intelligence Indicators from Microsoft Sentinel Threat Intelligence to Microsoft Defender for Endpoints.
Underlying Microsoft Technologies used:
This solution takes a dependency on the following technologies, and some of these dependencies either may be in
Underlying Microsoft Technologies used:
This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:
a.Azure Monitor HTTP Data Collector API
c.Microsoft Threat Intelligence Indicator API
This solution provides 1 data connector(s):
🔶 CLv1: This connector ingests into a table that uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g.
_s,_d,_b,_t,_g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.
This solution uses 2 table(s):
| Table | Used By Connectors | Used By Content |
|---|---|---|
Malware_Data_CL 🔶 |
Cofense Intelligence Threat Indicators Ingestion | Workbooks |
ThreatIntelligenceIndicator |
Cofense Intelligence Threat Indicators Ingestion | Workbooks |
🔶 CLv1: This table uses the legacy Custom Log V1 schema format with type-suffixed column names (e.g.
_s,_d,_b,_t,_g). Note: identification is based on column name suffixes which are also permitted in CLv2, so this classification may not always be accurate.
This solution includes 1 content item(s):
| Content Type | Count |
|---|---|
| Workbooks | 1 |
| Name | Tables Used |
|---|---|
| CofenseIntelligenceThreatIndicators | Malware_Data_CLThreatIntelligenceIndicator |
| Version | Date Modified (DD-MM-YYYY) | Change History |
|---|---|---|
| 3.0.0 | 10-12-2022 | Initial Solution Release |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊