Get-XdrXspmTopEntryPoint
SYNOPSIS
Retrieves top entry points from Microsoft Defender XDR XSPM attack paths.
SYNTAX
Get-XdrXspmTopEntryPoint [[-Top] <Int32>] [-Force] [-ProgressAction <ActionPreference>] [<CommonParameters>]
DESCRIPTION
Gets the top entry points from active and new attack paths in the XSPM (Extended Security Posture Management) API. Entry points are the initial access points that attackers could use to begin an attack path. Results are summarized by entry point ID and ordered by the number of attack paths using each entry point. Returns the top 10 entry points by default. This function includes caching support with a 30-minute TTL to reduce API calls.
EXAMPLES
EXAMPLE 1
Get-XdrXspmTopEntryPoint
Retrieves the top 10 entry points from active and new attack paths.
EXAMPLE 2
Get-XdrXspmTopEntryPoint -Force
Retrieves the top entry points, bypassing the cache.
PARAMETERS
-Top
The maximum number of top entry points to return. Default is 10. Note: The query includes "top 10" logic, so values other than 10 may not affect results unless the query is modified.
Type: Int32
Parameter Sets: (All)
Aliases:
Required: False
Position: 1
Default value: 10
Accept pipeline input: False
Accept wildcard characters: False
-Force
Bypasses the cache and forces a fresh retrieval from the API.
Type: SwitchParameter
Parameter Sets: (All)
Aliases:
Required: False
Position: Named
Default value: False
Accept pipeline input: False
Accept wildcard characters: False
-ProgressAction
The ProgressAction parameter is a common parameter, not a cmdlet parameter. For more information, see about_CommonParameters.
Type: ActionPreference
Parameter Sets: (All)
Aliases: proga
Required: False
Position: Named
Default value: None
Accept pipeline input: False
Accept wildcard characters: False
CommonParameters
This cmdlet supports the common parameters: -Debug, -ErrorAction, -ErrorVariable, -InformationAction, -InformationVariable, -OutVariable, -OutBuffer, -PipelineVariable, -Verbose, -WarningAction, and -WarningVariable. For more information, see about_CommonParameters.