Pull data from the Abnormal API
Last updated
Was this helpful?
Use the HTTP Pull Listener to collect data from the Abnormal REST API.
This API is for managing threats to an organization identified by Abnormal Security. The organization should be integrated with Abnormal Security and enabled for real-time detection of malicious emails.
This API uses bearer authentication to retrieve events through paginated API calls.
This API restricts the IPs that consume the data from them through an IP whitelisting mechanism. To allow your organization’s IPs, your IP must be in the Abnormal portal specific IPv4 / IPv6 address list, or a range of addresses using a CIDR block.
We currently support the following types of data:
Last updated
Was this helpful?
Was this helpful?

