Hello,
I am trying to onboard Defender ATP alerts using Microsoft Defender ATP Add-on for Splunk (https://splunkbase.splunk.com/app/4959/) but I can see certain alerts being onboarded multiple times. Has anyone else come across this type of issue before?
Thanks,
Revati