Managed Sentinel – Alert 224
Alert ID | MS-A224 |
Alert Name | Carbon Black Ingress Hit Events |
Description | This alert identifies Carbon Black ingress hit events (process path, source IPs, source hosts, feed name). |
Severity Level | Low |
Threat Indicator | |
MITRE ATT&CK Tactics | DefenseEvasion Execution Collection |
Log sources | Carbon Black |
False Positives | |
Recommendations |