Pathlock TDnR - SAP HTTP Webserver Events

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


Detects security-relevant events from the SAP HTTP webserver logfile, forwarded by Pathlock Threat Detection and Response. Anomalous HTTP activity may indicate web-based attacks, unauthorized access to SAP web services, or command-and-control communication.

Attribute Value
Type Analytic Rule
Solution Pathlock_TDnR
ID 2a3b4c5d-6e7f-4a0b-8c1d-2e3f4a5b6c31
Severity Medium
Status Available
Kind Scheduled
Tactics InitialAccess, CommandAndControl
Techniques T1190, T1071
Required Connectors Pathlock_TDnR
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
Pathlock_TDnR_CL ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Analytic Rules · Back to Pathlock_TDnR