
SentinelOne CDF
SentinelOne is a cloud EDR product. Agents are deployed to computers/endpoints, monitoring and reporting back any malicious activity to the SentinelOne dashboard. The ThreatQ integration for SentinelOne allows the ingestion of various reports and detections from SentinelOne.
Version
1.1.0Categories
Network Management,Threat Prevention
Devo IOC Exporter Connector
The Devo IOC Exporter Connector for ThreatQ enables the automatic dissemination of IOCs from a ThreatQ data collection to a Devo Lookup List. The connector utilizes Devo’s Python SDK, devo-sdk to make calls to the Devo API via their load balancers.



