CrowdStrike - Query for Logins
  • 02 Apr 2025
  • 1 Minute to read
  • Dark
    Light
  • PDF

CrowdStrike - Query for Logins

  • Dark
    Light
  • PDF

Article summary

CrowdStrike - Query for Logins

Description

CrowdStrike's Query for Logins automation is a powerful tool that allows organizations to quickly and easily query their CrowdStrike Falcon platform for user login information. This automation allows organizations to quickly and easily identify user logins, including the user’s IP address, time of login, and any other relevant information. This automation also provides the ability to filter the results by user, location, or time, allowing organizations to quickly identify any suspicious activity. Additionally, the automation can be used to quickly identify any potential security threats, such as malicious logins or attempts to access sensitive data. With CrowdStrike's Query for Logins automation, organizations can quickly and easily identify any suspicious activity and take action to protect their data.

Trigger Request

  • HTTP Post Request

  • Headers:

KeyValue
Content-Typeapplication/json
  • Json body parameters:
ParametersTypeDescription
access_tokenstringAccess token for the CrowdStrike API. Can be acheived by calling to CrowdStrike_Base_Token flow.
filterstringPlease provide the description of this parameter.
limitintegerPlease provide the description of this parameter.
offsetintegerPlease provide the description of this parameter.
querystringPlease provide the description of this parameter.
sortstringPlease provide the description of this parameter.

Supported CDC Versions

  • 2.8

Was this article helpful?