Connectors
...
Actions
Get Threat Intelligence Indicator
5 min
description retrieves a specific threat intelligence indicator from microsoft graph security api using the provided unique id endpoint url /beta/security/tiindicators/{{id}} method get inputs path parameters (object) – required path parameters id (string) – required threat intelligence indicator id output output parameters status code (number) reason (string) json body (object) @odata context (string) id (string) azuretenantid (string) action (string) additionalinformation (object) activitygroupnames (array) file name (string) – required file (string) – required confidence (object) description (string) diamondmodel (object) emailencoding (object) emaillanguage (object) emailrecipient (object) emailsenderaddress (object) emailsendername (object) emailsourcedomain (object) emailsourceipaddress (object) emailsubject (object) emailxmailer (object) expirationdatetime (string) externalid (object) filecompiledatetime (object) filecreateddatetime (object) filehashtype (string) filehashvalue (object) filemutexname (object) filename (object) filepacker (object) filepath (object) filesize (object) filetype (object) domainname (object) ingesteddatetime (string) isactive (boolean) killchain (array) file name (string) – required file (string) – required knownfalsepositives (object) lastreporteddatetime (object) malwarefamilynames (array) file name (string) – required file (string) – required networkcidrblock (object) networkdestinationasn (object) networkdestinationcidrblock (object) networkdestinationipv4 (object) networkdestinationipv6 (object) networkdestinationport (object) networkipv4 (string) networkipv6 (object) networkport (object) networkprotocol (object) networksourceasn (object) networksourcecidrblock (object) networksourceipv4 (object) networksourceipv6 (object) networksourceport (object) passiveonly (object) severity (number) tags (array) file name (string) – required file (string) – required targetproduct (string) threattype (object) tlplevel (object) url (object) useragent (object) vendorinformation (object) response headers header type cache control string transfer encoding string content type string content encoding string vary string strict transport security string request id string client request id string x ms ags diagnostic string odata version string date string