Skip to main content
Add threats that have a SHA1 hash and that match the filter to the Blocklist of the target scope: Global, Account, Site, or Group. Your role must have permissions to change the Blocklist - Admin, IR Team, SOC - and your user scope access must include the Agent.

Parameters

Example Output

Workflow Library Example

Add to Block List with Sentinelone and Send Results Via Email
Workflow LibraryPreview this Workflow on desktop