<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: API for ThreatCloud in API / CLI Discussion</title>
    <link>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145573#M6707</link>
    <description>&lt;P&gt;close, that's the API to use if you had a CP gateway to send the requests to. The TP API is actually linked in the guide though -&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/TPAPI/CP_1.0_ThreatPreventionAPI_APIRefGuide/html_frameset.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/TPAPI/CP_1.0_ThreatPreventionAPI_APIRefGuide/html_frameset.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;They're both quite similar to use but one goes directly to Threat Cloud instead of via a gateway.&lt;/P&gt;</description>
    <pubDate>Wed, 06 Apr 2022 08:47:34 GMT</pubDate>
    <dc:creator>StuartGreen</dc:creator>
    <dc:date>2022-04-06T08:47:34Z</dc:date>
    <item>
      <title>API for ThreatCloud</title>
      <link>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145196#M6690</link>
      <description>&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/General-Topics/bd-p/general-topics" target="_blank" rel="noopener"&gt;General Topics&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;I have some questions on ThreatCloud API,&lt;/P&gt;&lt;P&gt;1. Do we have&amp;nbsp; a public API that we can use to connect Threat Cloud ? The idea is to get Threat feeds into our local application/threat DB.&lt;/P&gt;&lt;P&gt;2. Is it possible to send data back into Threat cloud from our local threat application / DB ?&lt;/P&gt;&lt;P&gt;Or is ThreatCloud limited to only CP products ?&lt;/P&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;Srini&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Apr 2022 00:34:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145196#M6690</guid>
      <dc:creator>SriniKrish</dc:creator>
      <dc:date>2022-04-01T00:34:20Z</dc:date>
    </item>
    <item>
      <title>Re: API for ThreatCloud</title>
      <link>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145233#M6691</link>
      <description>&lt;P&gt;Hi Srini,&lt;/P&gt;
&lt;P&gt;There is a Threat Cloud API offering that lets you send files to Threat Cloud via API calls without having to use a CP appliance. It doesn't give you a local copy of the feeds but we have customers integrating the TE API into web applications to scan files from customers for threats and to perform threat extraction too. It contributes to Threat Cloud by providing an unknown file to run through threat emulation and any malicious behaviours detected will generate signatures - but you can't upload your own IOCs. I believe you would need an appliance (physical or virtual) to be able to apply your own IOCs to scans.&lt;/P&gt;</description>
      <pubDate>Fri, 01 Apr 2022 11:22:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145233#M6691</guid>
      <dc:creator>StuartGreen</dc:creator>
      <dc:date>2022-04-01T11:22:00Z</dc:date>
    </item>
    <item>
      <title>Re: API for ThreatCloud</title>
      <link>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145557#M6706</link>
      <description>&lt;P&gt;HI Stuart,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your response,&lt;/P&gt;&lt;P&gt;Is the below link the one you are referring to ?&lt;/P&gt;&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_ThreatPrevention_AdminGuide/Topics-TPG/Threat_Prevention_API.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_ThreatPrevention_AdminGuide/Topics-TPG/Threat_Prevention_API.htm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;&lt;P&gt;Srini&lt;/P&gt;</description>
      <pubDate>Wed, 06 Apr 2022 04:44:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145557#M6706</guid>
      <dc:creator>SriniKrish</dc:creator>
      <dc:date>2022-04-06T04:44:35Z</dc:date>
    </item>
    <item>
      <title>Re: API for ThreatCloud</title>
      <link>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145573#M6707</link>
      <description>&lt;P&gt;close, that's the API to use if you had a CP gateway to send the requests to. The TP API is actually linked in the guide though -&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/TPAPI/CP_1.0_ThreatPreventionAPI_APIRefGuide/html_frameset.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/TPAPI/CP_1.0_ThreatPreventionAPI_APIRefGuide/html_frameset.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;They're both quite similar to use but one goes directly to Threat Cloud instead of via a gateway.&lt;/P&gt;</description>
      <pubDate>Wed, 06 Apr 2022 08:47:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/API-CLI-Discussion/API-for-ThreatCloud/m-p/145573#M6707</guid>
      <dc:creator>StuartGreen</dc:creator>
      <dc:date>2022-04-06T08:47:34Z</dc:date>
    </item>
  </channel>
</rss>

