![]() The Data Forwarder also is soon releasing an updated schema version which aligns with Alerts v7 API. For more information, please see the CBC Alerts API Announcement on the Developer Network, available on June 15th.įor customers with existing integrations, detailed information to move from v6 to v7 API will be published shortly followed by an updated version of the Carbon Black Cloud Python SDK. The new Alerts V7 API improves alert management and allows for easier management, consumption, and triage of alerts in the Carbon Black Cloud. Overhauled alert schema with additional metadata, such as: process command line and username, parent and child process information, netconn data, additional device fields, and MITRE categorization when available.Įasier management and consumption of grouped alerts.Ībility to mark alerts as True Positive or False Positive.Īdditional fields available for both searching and filtering.Įnhanced note management with the ability to add notes to both individual alerts as well as to threats. The Alerts V7 API introduces a handful of new features including: This is the first of many upcoming enhancements to the VMware Carbon Black Cloud Alerts experience. The new Alerts V7 API is ready for public use and integration on June 15th.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |