Results for "microsoft"

App-Icon

ThreatQ Connector for Microsoft Active Directory

The ThreatQuotient for Active Directory Connector provides a method for ThreatQ users to import acti

Version

1.1.1

Categories

Enrichment & Analysis
App-Icon

ThreatQ Operation for Microsoft Active Directory

The ThreatQuotient Operation for Active Directory allows a ThreatQ user to query their Active Direct

Version

1.0.0

Categories

Enrichment & Analysis

CDF for Microsoft Azure Sentinel Incidents

Sentinel is a project of Microsoft Azure with the goal of alerting SOC’s of potential compromise. The Microsoft Azure Sentinel Incidents CDF retrieves those incidents.

Version

1.2.2

Categories

Enrichment & Analysis
App-Icon

ThreatQ CDF for Microsoft 365 Defender

The ThreatQ CDF for Microsoft 365 Defender integration enables the automatic ingestion of incidents, alerts, reports and related context, from your Microsoft 365 Defender portal, into ThreatQ.

Version

1.2.2

Categories

Commercial Intelligence
App-Icon

ThreatQ Operation for Microsoft 365 Defender

The ThreatQ Operation for Microsoft 365 Defender enables analysts to export IOC’s to Microsoft 365 Defender and set actions and expirations.

Version

1.0.0

Categories

EDR
App-Icon

ThreatQ On-Prem Connector for Microsoft Exchange

The ThreatQ On-Prem Connector for Microsoft Exchange is a unidirectional integration that integrates directly with the Microsoft Exchange mail server. The connector enables the ingestion of emails and attachments into ThreatQ and supports parsing emails and attachments as well as forwarded emails (spearphishing).

Version

1.1.1

Categories

Enrichment & Analysis,Email
App-Icon

CDF for Microsoft Interflow Bing Malicious URLs

The ThreatQ CDF for Microsoft Interflow Bing Malicious URLs downloads URLs identified as malicious by Microsoft Bing. The URLs and their corresponding Destination IP addresses are then imported into your ThreatQ instance and related to one another.

Version

1.1.1

Categories

Commercial Intelligence
App-Icon

Connector for Microsoft CTIP Hourly Summary

The ThreatQ Connector for Microsoft CTIP Hourly Summary allows a user to ingest indicators from Microsoft’s CTIP Infected Summary Hourly feed. This integration grabs the latest infected summary feed file, and uploads the malware and related indicators to ThreatQ.

Version

1.1.0

Categories

Open Source Intelligence
App-Icon

Connector for Microsoft CTIP Daily Summary

The ThreatQ Connector for Microsoft CTIP Daily Summary provides you with the ability to ingest indicators from Microsoft’s CTIP Infected Summary Daily feed. The connector retrieves the latest infected summary feed file and uploads the malware and related indicators to the ThreatQ platform.

Version

1.0.0

Categories

Open Source Intelligence
App-Icon

ThreatQ Connector for Microsoft CTIP Domains

The ThreatQ Connector for Microsoft CTIP Domains provides you with the ability to ingest indicators from Microsoft’s CTIP Domains feed. The integration obtains the latest domains file file, and uploads the malware and related indicators to ThreatQ.

Version

1.0.0

Categories

Open Source Intelligence

ThreatQ Action Bundle for Microsoft Azure Sentinel

The ThreatQ Action Bundle for Microsoft Azure Sentinel provides actions that are used to enrich a specific collection and to add or delete them to/from your Microsoft Azure Sentinel instance.

Version

1.1.2

Categories

Orchestration
App-Icon

ThreatQ Action for Microsoft 365 Defender

The ThreatQ Action for Microsoft 365 Defender integration allows you to export indicators directly to Microsoft Defender via Microsoft’s 365 Defender API.

Version

1.0.0

Categories

Orchestration
App-Icon

ThreatQ CDF for Microsoft Exchange

The Microsoft Exchange CDF for ThreatQ is an integration that enables the ingestion of emails and attachments from an Exchange Mailbox, into ThreatQ.

Version

1.0.0

Categories

Commercial Intelligence
App-Icon

ThreatQ Action for Microsoft Entra

The Microsoft Entra integration allows a ThreatQ user to interact with the Microsoft cloud-based identity and access management service. This can be used to control access to external Microsoft resources and applications.

Version

1.0.0

Categories

Orchestration

Copyright © 2025, ThreatQuotient, Inc. All Rights Reserved. Privacy Policy