Palo Alto Networks Cortex XDR REST API
REST API for the Cortex XDR extended detection and response platform. Provides programmatic access to incidents, alerts, endpoints, scripts, XQL queries, and audit logs. Cortex XDR correlates data from network, endpoint, cloud, and third-party sources to detect and investigate threats. Authentication uses a custom HMAC-SHA256 scheme: generate an API key ID and secret from the Cortex XDR settings, then sign each request using the x-xdr-auth-id, x-xdr-nonce, x-xdr-timestamp, and x-xdr-hmac-v2 head
Overview
Palo Alto Networks Cortex XDR REST API is a Postman Collection published by Palo Alto Networks on the APIs.io network.
REST API for the Cortex XDR extended detection and response platform. Provides programmatic access to incidents, alerts, endpoints, scripts, XQL queries, and audit logs. Cortex XDR correlates data from network, endpoint, cloud, and third-party sources to detect and investigate threats. Authentication uses a custom HMAC-SHA256 scheme: generate an API key ID and secret from the Cortex XDR settings, then sign each request using the x-xdr-auth-id, x-xdr-nonce, x-xdr-timestamp, and x-xdr-hmac-v2 head
The collection contains 13 requests organised into 19 folders.
Tagged areas include Cloud Security, Cybersecurity, Firewall, Network Security, and SASE.