Microsoft Defender XDR API
Unified extended detection and response API for automating workflows based on shared incident and advanced hunting tables across Microsoft security products.
Documentation
Documentation
https://learn.microsoft.com/en-us/defender-xdr/api-overview
APIReference
https://learn.microsoft.com/en-us/defender-xdr/api-supported
Authentication
https://learn.microsoft.com/en-us/defender-xdr/api-access
Other Resources
Incidents API
https://learn.microsoft.com/en-us/defender-xdr/api-incident
Advanced Hunting API
https://learn.microsoft.com/en-us/defender-xdr/api-advanced-hunting
Streaming API
https://learn.microsoft.com/en-us/defender-xdr/streaming-api
Supported Event Types
https://learn.microsoft.com/en-us/defender-xdr/supported-event-types
ErrorCodes
https://learn.microsoft.com/en-us/defender-xdr/api-error-codes