CyfirmaASCertificatesAlerts_CL

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index


Attribute Value
Ingestion API Supported ✓ Yes

Contents

Schema (37 columns)

Source: KQL validation test schema

Column Name Type
alert_object_uid string
Alert_title string
alert_uid string
asset_comments string
attacks dynamic
category string
cert_data string
cert_hash string
cert_type string
description string
first_seen datetime
is_third_party bool
is_vulnerable bool
issued_by string
issued_to string
issuer_public_hash string
last_seen datetime
notes dynamic
protocols dynamic
risk_score int
safe_flag_comments string
safe_flag_marked_by string
safe_flag_marked_date string
self_signed bool
serial string
severity string
source string
status string
sub_category string
sub_domain string
TimeGenerated datetime
top_domain string
uid string
use_cases string
valid_from datetime
valid_to datetime
version string

Solutions (1)

This table is used by the following solutions:

Connectors (1)

This table is ingested by the following connectors:

Connector Selection Criteria
CYFIRMA Attack Surface

Content Items Using This Table (2)

Analytic Rules (2)

In solution Cyfirma Attack Surface:

Analytic Rule Selection Criteria
CYFIRMA - Attack Surface - Weak Certificate Exposure - High Rule
CYFIRMA - Attack Surface - Weak Certificate Exposure - Medium Rule

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Tables Index