CYFIRMA - Data Breach and Web Monitoring - Dark Web High Rule

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


Detects critical alerts from CYFIRMA related to sensitive data or credentials leaked on dark web forums. These events often indicate unauthorized access or compromise of enterprise systems, cloud environments, or identity platforms. Immediate investigation is required to assess breach scope and initiate mitigation, including credential resets, access reviews, and threat actor tracking.

Attribute Value
Type Analytic Rule
Solution Cyfirma Digital Risk
ID c3f1f55b-7e54-4416-8afc-7d7876b29b0f
Severity High
Status Available
Kind Scheduled
Tactics CredentialAccess, Collection, Exfiltration, Impact
Techniques T1552.001, T1555.003, T1212, T1119, T1048, T1486
Required Connectors CyfirmaDigitalRiskAlertsConnector
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
CyfirmaDBWMDarkWebAlerts_CL ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Analytic Rules · Back to Cyfirma Digital Risk