added

Automate Risk Response: "Add to List" Action via Workflows & Monitors

🌟 New Feature Alert 🌟

The Add to List action is now available in Workflows and Monitors! 🎉

What's New?

  1. You can now configure a Monitor or Workflow to automatically add items to a List!
  2. Great for handling business-specific risks—whether you want to enforce a cool-off period, contain potential credential stuffing attempts, or take other automated ITDR actions to stop threats before they spread.

Contain credential stuffing attacks by automatically putting suspicious IPs on a block list

Why Does This Matter?

  1. Lists are now more than static collections: they can be automatically enriched by your detections and responses.
  2. This makes it easier to contain threats in real-time and drive consistent policy enforcement across your environment.