Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
Identifies devices experiencing multiple threat types within a short timeframe, indicating coordinated attacks
| Attribute | Value |
|---|---|
| Type | Hunting Query |
| Solution | Lookout |
| ID | lookout-advanced-threat-hunting |
| Tactics | Discovery, Persistence, DefenseEvasion |
| Techniques | T1057, T1418, T1566 |
| Required Connectors | LookoutAPI |
| Source | View on GitHub |
This content item queries data from the following tables:
| Table | Transformations | Ingestion API | Lake-Only |
|---|---|---|---|
LookoutMtdV2_CL |
? | ✓ | ? |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊