Analytic Rules - H

17 analytic rules starting with 'H'.

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

All Analytic Rules


Jump to letter: # | A | B | C | D | E | F | G | H | I | J | K | L | M | N | O | P | Q | R | S | T | U | V | W | X | Z

Source: 📦 Solution | 📄 Standalone | 🔗 GitHub Only

Name Severity Source
HackerView - Any Issue Detected ⚠️ Informational 📦 CTM360
High bandwidth in the network (Microsoft Defender for IoT) Low 📦 IoTOTThreatMonitoringwithDefenderforIoT
High count of connections by client IP on many ports Medium 📄 Standalone Content
High count of failed attempts from same client IP Medium 📄 Standalone Content
High count of failed logons by a user Medium 📄 Standalone Content
High Number of Urgent Vulnerabilities Detected Medium 📦 QualysVM
High risk Office operation conducted by IP Address that recently attempted to log into a disabled account Medium 📄 Standalone Content
High severity malicious activity detected High 📦 Azure Firewall
High Urgency IONIX Action Items High 📦 IONIX
High-Risk Admin Activity Medium 📦 Okta Single Sign-On
High-Risk Cross-Cloud User Impersonation Medium 📦 Multi Cloud Attack Coverage Essentials - Resource Abuse
Highly Sensitive Password Accessed Medium 📦 Lastpass Enterprise Activity Monitoring
Hijack Execution Flow - DLL Side-Loading Medium 📦 FalconFriday
Host Deleted Low 📦 Veeam
Host Settings Updated Informational 📦 Veeam
Hypervisor Host Deleted Informational 📦 Veeam
Hypervisor Host Settings Updated Informational 📦 Veeam

⚠️ Items marked with ⚠️ are not listed in their Solution JSON file. They were discovered by scanning solution folders.


Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index · Back to Analytic Rules