525d001024 | ||
---|---|---|
.. | ||
RecordedFuture_Dom_C2_DNS_Name_ImportToSentinel.json | ||
RecordedFuture_Dom_C2_DNS_Name_IndicatorProcessor.json | ||
readme.md |
readme.md
RecordedFuture - DOMAIN - C&C DNS Name
author: Adrian Porcescu, Recorded Future
These playbooks leverage the Recorded Future API to automate the ingestion of Recorded Future C&C DNS Name Domain RiskList, into the ThreatIntelligenceIndicator table, for detection (alert) actions in Microsoft Azure Sentinel. For additional information please visit Recorded Future.
Note: Due to internal Microsoft Logic Apps dependencies, please deploy first the ImportToSentinel playbook before the IndicatorProcessor one.
Links to deploy the RecordedFuture_Dom_C2_DNS_Name_IndicatorProcessor playbook template:
Links to deploy the RecordedFuture_Dom_C2_DNS_Name_ImportToSentinel playbook template: