⚠️ ZeroFox Threat Intelligence

⚠️ Unpublished: This item is from a solution that is not yet published on Azure Marketplace or not installed in Content Hub.

ZeroFox Threat Intelligence Logo

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Solutions Index


Attribute Value
Publisher ZeroFox
Support Tier Partner
Support Link https://www.zerofox.com/contact-us/
Categories Security - Threat Protection,Security - Automation (SOAR)
Version 3.0.0
Author ZeroFox - integration-support@zerofox.com
First Published 2026-02-18
Solution Folder ZeroFox Threat Intelligence

The ZeroFox solution for Microsoft Sentinel enables you to ingest ZeroFox Threat Intelligence into Microsoft Sentinel using the ZeroFox API.

Underlying Microsoft Technologies used:

This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:

a. Azure Monitor Logs Ingestion API.

Data Connectors

This solution provides 17 data connector(s):

Tables Used

This solution uses 17 table(s):

Table Used By Connectors Used By Content
ZeroFoxAdvancedDarkWeb_CL ZeroFox Enterprise - Advanced Dark Web -
ZeroFoxBotnetCC_CL ZeroFox Enterprise - Botnet Compromised Credentials -
ZeroFoxBotnet_CL ZeroFox Enterprise - Botnet -
ZeroFoxBreaches_CL ZeroFox Enterprise - Breaches -
ZeroFoxCompromisedCredentials_CL ZeroFox Enterprise - Compromised Credentials -
ZeroFoxCreditCards_CL ZeroFox Enterprise - Credit Cards -
ZeroFoxDarkWeb_CL ZeroFox Enterprise - Dark Web -
ZeroFoxDiscord_CL ZeroFox Enterprise - Discord -
ZeroFoxDisruption_CL ZeroFox Enterprise - Disruption -
ZeroFoxEmailAddresses_CL ZeroFox Enterprise - Email Addresses -
ZeroFoxExploits_CL ZeroFox Enterprise - Exploits -
ZeroFoxIndicators_CL ZeroFox Enterprise - Indicators -
ZeroFoxKeyIncidents_CL ZeroFox Enterprise - Key Incidents -
ZeroFoxNationalIds_CL ZeroFox Enterprise - National IDs -
ZeroFoxPhysicalThreats_CL ZeroFox Enterprise - Physical Threats -
ZeroFoxTelegram_CL ZeroFox Enterprise - Telegram -
ZeroFoxVulnerabilities_CL ZeroFox Enterprise - Vulnerabilities -

Release Notes

Version Date Modified (DD-MM-YYYY) Change History
3.0.0 01-04-2026 Added Data Connectors for ZeroFox's Threat Intelligence.

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Solutions Index