Skip to content

[M365 Defender] - Add a new data stream to support vulnerability logsΒ #7482

@ShourieG

Description

@ShourieG

We require a new data stream in the m365 defender integration that is capable of pulling vulnerability logs, using either the standard vulnerability api documented here or by using the latest graph apis documented here. The graph apis have limitations at the moment as they are not capable of fetching a paginated vulnerability list similar to the older standard REST apis. The approach needs to be decided.

This feature enhancement is tied to a recent customer request & support ticket linked here

Metadata

Metadata

Assignees

No one assigned

    Labels

    CrestContributions from Crest developement team.Integration:m365_defenderMicrosoft Defender XDRTeam:Security-Service IntegrationsSecurity Service Integrations team [elastic/security-service-integrations]enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions