Hello,
Thank you for your respond. I have set up a webhook to receive FIM alert, but it only get alert data, such as file hash, instead of the file.
The workflow I plan to build is to get the whole file from agent and then send it to virustotal api, so I'm thinking of calling ssh command with a Shuffle node to send or copy the file from agent to Shuffle, will this method be applicable? Could you provide any sources where I can get further help on this task? Thank you.
Best,