VTI - High Severity SHA1 Collision Detection

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


This will alert when a collision is detected for DeviceFileEvents events with VTI high severity SHA1 IoCs

Attribute Value
Type Analytic Rule
Solution Visa Threat Intelligence (VTI)
ID dbd9e28f-973d-47f3-a8c3-9e18da846870
Severity High
Kind Scheduled
Tactics Execution
Techniques T1204
Required Connectors VisaThreatIntelligence
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
DeviceFileEvents ?
VisaThreatIntelligenceIOC_CL ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Analytic Rules · Back to Visa Threat Intelligence (VTI)