Solution: VMRay
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
| Attribute | Value |
|---|---|
| Publisher | VMRay |
| Support Tier | Partner |
| Support Link | https://www.vmray.com/contact/customer-support/ |
| Categories | domains |
| Version | 3.0.0 |
| Author | VMRay |
| First Published | 2025-07-23 |
| Solution Folder | VMRay |
| Marketplace | Azure Marketplace · Popularity: ⚪ Very Low (0%) |
The VMRay Connector for Microsoft Sentinel enhances security operations by providing enriched threat intelligence, enabling faster and more informed responses to security incidents. The integration has two main parts: first, URL detonation and enrichment, which provides detailed insights into suspicious URLs. Second, it automatically generates and feeds threat intelligence for all submissions to VMRay, improving threat detection and incident response in Sentinel. This seamless integration empowers teams to proactively address emerging threats.
This solution provides 1 data connector(s):
This solution uses 1 table(s):
| Table | Used By Connectors | Used By Content |
|---|---|---|
ThreatIntelligenceIndicator |
VMRayThreatIntelligence | - |
This solution includes 2 content item(s):
| Content Type | Count |
|---|---|
| Playbooks | 2 |
| Name | Description | Tables Used |
|---|---|---|
| VMRay Email Attachment Analyis | Submits a attachment or set of attachment associated with an office 365 email to VMRay for Analyis. | - |
| VMRay URL Analyis | Submits a url or set of urls associated with an incident to VMRay for Analyis. | - |
📄 Source: VMRay/README.md
Latest Version: 3.0.1 - Release Date: 2025-11-07
Microsoft Azure 1. Azure functions with Flex Consumption plan. Reference: https://learn.microsoft.com/en-us/azure/azure-functions/flex-consumption-plan
Note: Flex Consumption plans are not available in all regions, please check if the region your are deploying the function is supported, if not we suggest you to deploy the function app with premium plan. Reference: https://learn.microsoft.com/en-us/azure/azure-functions/flex-consumption-how-to?tabs=azure-cli%2Cvs-code-publish&pivots=programming-language-python#view-currently-supported-regions 3. Azure functions Premium plan. Reference: https://learn.microsoft.com/en-us/azure/azure-functions/functions-premium-plan 4. Azure Logic App with Consumption plan. Reference: https://learn.microsoft.com/en-us/azure/logic-apps/logic-apps-pricing#consumption-multitenant 5. Azure storage with Standard general-purpose v2.
Microsoft Entra ID service.
Add->App registration.
Register.
Application Name, Application ID and Tenant ID.
Manage->API permissions tabMicrosoft Graph buttonindicator and click on the ThreatIndicators.ReadWrite.OwnedBy, click Add permissions button below.Grant admin consent
[Content truncated...]
| Version | Date Modified (DD-MM-YYYY) | Change History |
|---|---|---|
| 3.0.1 | 07-11-2025 | Fixed Premium ARM template |
| 3.0.0 | 23-07-2025 | Initial Solution Release |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊