PulseConnectSecure - CVE-2021-22893 Possible Pulse Connect Secure RCE Vulnerability Attack

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


This query identifies exploitation attempts using Pulse Connect Secure(PCS) vulnerability (CVE-2021-22893) to the VPN server

Attribute Value
Type Analytic Rule
Solution Standalone Content
ID d0c82b7f-40b2-4180-a4d6-7aa0541b7599
Severity High
Kind Scheduled
Tactics InitialAccess
Techniques T1190
Required Connectors PulseConnectSecure
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
Syslog ?

Associated Connectors

The following connectors provide data for this content item:

Connector Solution
SyslogAma Syslog

Solutions: Syslog


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Analytic Rules