/ransomware/groups/hunting_queries

POST /api/ransomware/groups/hunting_queries

Price: 35 credits

Get the KQL threat-hunting queries published for a ransomware group: title, MITRE ATT&CK tactic and technique, target platform, data source, what the query detects and the full query text

How to use it

The query field is Kusto (KQL) for the platform named in platform. A group with no published query returns an empty list; an unknown group name answers 412.

Parameters

Request body

Response

Errors

Response headers