CyberBlindSpot - Any Issue Detected

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


Generic alert that triggers when ANY CyberBlindSpot issue/incident is detected in the logs. Extracts nested metadata from RawPayload.

Attribute Value
Type Analytic Rule
Solution CTM360
ID abe1a662-d00d-482e-aa68-9394622ae02e
Severity Informational
Status Available
Kind Scheduled
Tactics Reconnaissance, Discovery, ResourceDevelopment, InitialAccess
Techniques T1592, T1598, T1566
Required Connectors CTM360CBSConnectorDefinition
Source View on GitHub

⚠️ Not listed in Solution JSON: This content item was discovered by scanning the solution folder but is not included in the official Solution JSON file. It may be a legacy item, under development, or excluded from the official solution package.

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
CBSLog_AzureV2_CL ? ?
CBSLog_Azure_1_CL 🔶 ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Analytic Rules · Back to CTM360