
May 7, 2024
1.5.2
ThreatQ versions >= 5.1
LogRhythm
Overview
A bi-directional integration with the LogRhythm SIEM XDR.
- Using a saved search, ThreatQ sends IOCs (IP, FQDN, MD5, SHA256 and URL) to lists in the LogRhythm XDR.
- Pushing IOCs and events from LogRhythm to ThreatQ is accomplished using LogRhythm's Smart Actions.