Get FalconOverWatchDetection - CrowdStrike/psfalcon GitHub Wiki
Retrieve the total number of Falcon OverWatch detections across all customers
Requires 'OverWatch Dashboard: Read'.
Name | Type | Description | Min | Max | Allowed | Pipeline | PipelineByName |
---|---|---|---|---|---|---|---|
Filter | String | Falcon Query Language expression to limit results |
Get-FalconOverWatchDetection [-Filter] <String> [-WhatIf] [-Confirm] [<CommonParameters>]
GET /overwatch-dashboards/aggregates/detections-global-counts/v1
AggregatesDetectionsGlobalCounts
Get-FalconOverWatchDetection -Filter "detect_time:>'now-48h'"
2023-04-25: PSFalcon v2.2.5