Valimail Enforce - High Value Event Summary

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


Summarizes all high-value Valimail Enforce events over the selected time range, grouped by category and user. Good for periodic security reviews and baselining normal admin activity.

Attribute Value
Type Hunting Query
Solution ValimailEnforce
ID a2be34b7-e841-471a-aaac-142be8a74cab
Tactics DefenseEvasion, Impact
Techniques T1562, T1098
Required Connectors ValimailEnforce
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
ValimailEnforceEvents_CL ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Hunting Queries · Back to ValimailEnforce