Pull All Threat Intelligence Indicators
I have a runbook that queries all the threat intelligence indicators within Sentinel. It queries the default 100. However, when i pull the “nextLink” within the response the new response is blank so no data is being pulled from the 2nd pull when i know there are over 100 indicators within the platform.
Is there a way i can pull all of the indicators within the runbook/powershell script?
I have a runbook that queries all the threat intelligence indicators within Sentinel. It queries the default 100. However, when i pull the “nextLink” within the response the new response is blank so no data is being pulled from the 2nd pull when i know there are over 100 indicators within the platform. Is there a way i can pull all of the indicators within the runbook/powershell script? Read More