PRODAFTUstaCompromisedCredentials_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (22 columns)

Source: KQL validation test schema

Column Name Type
CompanyId int
CompanyName string
ContentType string
Created datetime
InfectionDate datetime
IsCorporate bool
PasswordLength int
PasswordScore string
Source string
Status string
StatusTimestamp datetime
TicketId long
TimeGenerated datetime
Url string
Username string
VictimComputerName string
VictimCountry string
VictimIp string
VictimMalware string
VictimOs string
VictimUid string
VictimUsername string

Schema References

Official Microsoft Learn documentation for field/column information:

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
PRODAFT USTA - Account Takeover Prevention (via Codeless Connector Framework)

Content Items Using This Table (4)

Analytic Rules (2)

In solution PRODAFT USTA - Account Takeover Prevention:

Analytic Rule Selection Criteria
PRODAFT USTA - Compromised credential used in successful sign-in
PRODAFT USTA - Corporate credential compromised

Hunting Queries (1)

In solution PRODAFT USTA - Account Takeover Prevention:

Hunting Query Selection Criteria
PRODAFT USTA - Infostealer exposure across corporate identities

Workbooks (1)

In solution PRODAFT USTA - Account Takeover Prevention:

Workbook Selection Criteria
PRODAFTUstaATPOverview

Parsers Using This Table (1)

Other Parsers (1)

Parser Solution Selection Criteria
PRODAFTUstaCompromisedCredentials PRODAFT USTA - Account Takeover Prevention

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Tables Index