sophos_playbook_threat_hunt
Retrieve a threat hunting playbook with SQL queries, MITRE mappings, and isolation decision trees for a specific hypothesis.
Instructions
Get threat hunting playbook for Sophos Live Discover and XDR. Returns SQL queries, MITRE mappings, and isolation decision trees.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| hunt_hypothesis | Yes | Threat hunting hypothesis to investigate |