Detect threat information in web requests (ASIM Web Session)

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


This query identifies the presence of threat information in fields such as EventSeverity, ThreatName, and ThreatCategory

Attribute Value
Type Hunting Query
Solution Web Session Essentials
ID 6e813653-df72-4b14-954e-5619d1b6d586
Severity High
Status Available
Tactics InitialAccess
Techniques T1190, T1133
Source View on GitHub

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Hunting Queries · Back to Web Session Essentials