Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
Generic alert that triggers when ANY CyberBlindSpot issue/incident is detected in the logs. Extracts nested metadata from RawPayload.
| Attribute | Value |
|---|---|
| Type | Analytic Rule |
| Solution | CTM360 |
| ID | abe1a662-d00d-482e-aa68-9394622ae02e |
| Severity | Informational |
| Status | Available |
| Kind | Scheduled |
| Tactics | Reconnaissance, Discovery, ResourceDevelopment, InitialAccess |
| Techniques | T1592, T1598, T1566 |
| Required Connectors | CTM360CBSConnectorDefinition |
| Source | View on GitHub |
⚠️ Not listed in Solution JSON: This content item was discovered by scanning the solution folder but is not included in the official Solution JSON file. It may be a legacy item, under development, or excluded from the official solution package.
This content item queries data from the following tables:
| Table | Transformations | Ingestion API | Lake-Only |
|---|---|---|---|
CBSLog_AzureV2_CL |
? | ✓ | ? |
CBSLog_Azure_1_CL 🔶 |
? | ✓ | ? |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊