TheHive Solution
Microsoft Sentinel, Microsoft Corporation
TheHive Solution
Microsoft Sentinel, Microsoft Corporation
TheHive Solution
Microsoft Sentinel, Microsoft Corporation
TheHive a 4-IN-1 SECURITY INCIDENT RESPONSE PLATFORM
Note: Please refer to the following before installing the solution:
• Review the solution Release Notes
• There may be known issues pertaining to this Solution, please refer to them before installing.
TheHive solution provides the capability to ingest common The Hive events into Microsoft Sentinel through Webhooks. The Hive can notify external system of modification events (case creation, alert update, task assignment) in real time. When a change occurs in The Hive, an HTTPS POST request with event information is sent to a callback data connector URL. Refer to Webhooks documentation for more information.
Underlying Microsoft Technologies used:
This solution takes a dependency on the following technologies, and some of these dependencies either may be in Preview state or might result in additional ingestion or operational costs:
a. Azure Monitor HTTP Data Collector API
Data Connectors: 1, Parsers: 1, Custom Azure Logic Apps Connectors: 1, Playbooks: 3
Learn more about Microsoft Sentinel | Learn more about Solutions