Pathlock TDnR - Authorization Profile Changes

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


Detects changes to SAP authorization profiles, forwarded by Pathlock Threat Detection and Response. Unauthorized profile modifications may grant excessive privileges, create privilege escalation paths, or be used to establish persistent privileged access in SAP systems.

Attribute Value
Type Analytic Rule
Solution Pathlock_TDnR
ID 2a3b4c5d-6e7f-4a0b-8c1d-2e3f4a5b6c41
Severity High
Status Available
Kind Scheduled
Tactics PrivilegeEscalation, Persistence
Techniques T1548, T1098
Required Connectors Pathlock_TDnR
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
Pathlock_TDnR_CL ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Analytic Rules · Back to Pathlock_TDnR