
Oct 23, 2024
1.0.3
ThreatQ versions >= 5.10.0
Rapid7 InsightVM CDF
Overview
The Rapid7 insightVM integration for ThreatQ provides you with the ability to automatically track sites & assets registered within Rapid7 insightVM to monitor their vulnerabilities and overall risk.
The integration ingests threat intelligence data from the following endpoints:
- Rapid7 insightVM - Sites - automatically pulls sites & assets registered with Rapid7 insightVM.
- Get Site Assets (supplemental) - fetches the associated assets for a given site.
- Get Asset Vulnerabilties (supplemental) - fetches the vulnerabilities for a given asset.
- Get Tags (suppplemental) - fetches the tags for a given asset or site.
The integration ingests the following system object types:
- Assets
- Asset Attributes
- Indicators
- Indicator Attributes
- Reports
- Report Attributes