threats
A valid Incident Orchestration license is required for this resource
A list of threats
@filterable @paginatable @sortable
Arguments
ID)
  ID)
  Threat_filter)
  Int)
  Int)
  String)
  Int)
  [Threat_sort])
  Return fields
ID!)
  ID
ThreatChannel!)
  Source of report for the threat
ThreatClassification)
  An estimate on how likely this threat is to be malicious
Date!)
  When was this created?
ThreatEmail!)
  The possibly malicious email
ThreatEnrichments)
  Enriched data
EscalationEmail)
  Escalation notice that gets sent to org security team
Date)
  When was the reporter feedback sent?
Boolean!)
  Is reported by a vip user
Organization!)
  Organization that threat was reported to
ID!)
  Id of the Organization that threat was reported to
Prediction)
  Ml prediction of the threat
Date)
  When was the threat severity rated?
User!)
  User who reported the threat
ThreatSeverity)
  How severe is the threat?
SocClassification)
  A classification given by SOC-team
ThreatState!)
  Is the threat uploaded?
ID)
  UUID to help us redirect user to threat feedback page
Date)
  When was this last updated?
UserModifiers)
  Additional modifier data provided by the user
Boolean)
  Does user want feedback about the threat?