Detection On Demand API version 2022.04.01

New features and enhancements in Detection as a Service 2022.04.01:

  • MITRE ATT&CK results support in “Reports” API endpoint
    • MITRE ATT&CK information is now available via API in addition to UI
  • Native support for Google Cloud Platform Storage
    • Native integration for Google Cloud Platform is now available and included in the Integrations section of UI
  • Support to add API key name in Reports API endpoint
    • Customers with more than one API key can now see specific API key name context in reports
  • Profile selection support for URL endpoint
    • Customers can now configure the operating system (OS) in which the URL needs to be analyzed
  • Force flag support for URL endpoint
    • With force flag support enabled, if a customer submits the same file more than once, Detection as a Service will analyze the duplicate submission
  • Support for SHA256 in Hashes endpoint
    • Hashes endpoint now supports SHA256
  • MITRE ATT&CK mapping update via Security Content
    • MITRE ATT&CK information now auto-updates via Security Content
  • Trellix branding changes on Portal
    • Trellix logo/company name is now updated
    • Note: Product name change will be reflected in an upcoming release
  • File submission support via pre-signed URL
    • Customers can submit a file to Detection as a Service through a pre-signed URL
      • One-time URL where customer can post directly via AWS S3 bucket