Wiz Defend Threats alert

wiz

Classification:

attack

このページは日本語には対応しておりません。随時翻訳に取り組んでいます。
翻訳に関してご質問やご意見ございましたら、お気軽にご連絡ください

Goal

Detect threat alerts generated by Wiz Defend.

Strategy

This rule detects Defend threat alerts that have been generated by Wiz.

Triage and response

  1. Investigate the entity {{@threat.id}} with alert {{@evt.name}}. Review {{@threats.resource.id}} or {{@threats.actors.name}} if populated in the log.
  2. Take necessary and appropriate actions based on the company procedures.