Incidents 2142 total / 123 filtered
By Severity
By Status
Top Affected Hosts
MITRE Techniques
Daily Incidents (Last 7 Days)
Daily Alerts (Last 7 Days)
Hourly Distribution
All Incidents
| ID | Severity | Status | Description | Hosts | MITRE | Alerts | Created | Modified | Actions |
|---|---|---|---|---|---|---|---|---|---|
| #2139 | MEDIUM | new | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-20 19:07 | 01-20 21:13 | ||
| #2133 | MEDIUM | resolved other | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-20 16:45 | 01-20 19:00 | ||
| #2125 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-20 13:52 | 01-20 16:00 | ||
| #2118 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-20 11:15 | 01-20 13:30 | ||
| #2113 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-20 08:37 | 01-20 11:00 | ||
| #2105 | MEDIUM | resolved other | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-20 05:45 | 01-20 08:00 | ||
| #2098 | MEDIUM | resolved known issue | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-20 03:22 | 01-20 05:30 | ||
| #2096 | HIGH | resolved other | 'File Drop - 1815185192' along with 4 other i... |
T1059
T1216
+3
|
5 | 01-20 02:19 | 01-20 02:50 | ||
| #2091 | HIGH | resolved security testing | 'Script Engine Activity - 2909583408' along w... |
T1059
T1003.002
+3
|
5 | 01-20 00:56 | 01-20 01:40 | ||
| #2085 | HIGH | resolved duplicate incident | 'Script Activity - 3055004603' along with 4 o... |
T1059
|
5 | 01-19 23:09 | 01-20 00:30 | ||
| #2067 | MEDIUM | resolved security testing | 'WildFire Malware' along with 5 other issues ... | - | 6 | 01-19 19:51 | 01-19 22:10 | ||
| #2052 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-19 16:52 | 01-19 19:00 | ||
| #2044 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-19 14:21 | 01-19 16:38 | ||
| #2034 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-19 11:37 | 01-19 13:46 | ||
| #2033 | HIGH | resolved security testing | 'SYNC - Credential Gathering - 2237270456' al... |
T1003.002
T1562.002
|
6 | 01-19 11:27 | 01-19 11:59 | ||
| #2031 | HIGH | resolved security testing | 'Protection Against Security Measures Bypass ... |
T1059
T1140
+2
|
5 | 01-19 11:08 | 01-19 11:39 | ||
| #2026 | HIGH | resolved security testing | 'File Drop - 1815185192' along with 6 other i... |
T1140
T1102.002
|
7 | 01-19 09:31 | 01-19 11:04 | ||
| #2022 | MEDIUM | resolved false positive | 'WildFire Malware' along with 5 other issues ... | - | 6 | 01-19 07:45 | 01-19 09:00 | ||
| #2016 | MEDIUM | resolved other | 'WildFire Malware' along with 5 other issues ... | - | 6 | 01-19 05:19 | 01-19 07:30 | ||
| #2014 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-19 04:33 | 01-19 06:50 | ||
| #2010 | MEDIUM | resolved security testing | 'WildFire Malware' along with 4 other issues ... | - | 5 | 01-19 03:21 | 01-19 04:30 | ||
| #2007 | MEDIUM | resolved known issue | 'WildFire Malware' along with 5 other issues ... | - | 6 | 01-19 02:10 | 01-19 03:20 | ||
| #2001 | HIGH | resolved security testing | 'Powershell Activity - 3083271452' along with... |
T1059
T1140
+1
|
5 | 01-19 01:07 | 01-19 01:40 | ||
| #1996 | HIGH | resolved security testing | 'Powershell Activity - 3990759154' along with... |
T1059
T1140
+1
|
6 | 01-19 00:03 | 01-19 00:30 | ||
| #1985 | MEDIUM | resolved duplicate incident | 'WildFire Malware' along with 4 other issues ... |
T1216
|
5 | 01-18 22:57 | 01-18 23:10 | ||
| #1721 | HIGH | resolved security testing | 'Command-line arguments match Mimikatz execut... |
T1003
|
3 | 01-15 15:34 | 01-16 23:51 | ||
| #1716 | HIGH | resolved security testing | 'Persistency - 1983659418' along with 4 other... |
T1059
T1546.007
+3
|
5 | 01-15 14:43 | 01-15 15:28 | ||
| #1715 | HIGH | resolved security testing | 'Regsvr32 may have run code from an untrusted... |
T1218.010
T1218.007
+1
|
5 | 01-15 14:30 | 01-15 14:42 | ||
| #1713 | HIGH | resolved security testing | 'Command-line arguments match Mimikatz execut... |
T1003
T1218.010
+2
|
7 | 01-15 14:05 | 01-15 14:22 | ||
| #1706 | HIGH | resolved security testing | 'Regsvr32 may have run code from an untrusted... |
T1216
T1562.004
+4
|
6 | 01-15 13:38 | 01-15 13:51 | ||
| #1704 | HIGH | resolved security testing | 'WildFire Malware' along with 5 other issues ... |
T1059
T1140
|
6 | 01-15 13:24 | 01-15 13:36 | ||
| #1702 | HIGH | resolved security testing | 'Impair Defenses - 2363038651' along with 5 o... |
T1562.004
T1003
+3
|
6 | 01-15 13:12 | 01-15 13:21 | ||
| #1701 | HIGH | resolved security testing | 'Staged Malware Activity - 2394207323' along ... |
T1059
T1216
+4
|
6 | 01-15 13:06 | 01-15 13:11 | ||
| #286 | HIGH | resolved other | 'File Drop - 1815185192' along with 6 other i... |
T1218.010
T1140
+1
|
7 | 01-05 00:00 | 01-05 00:20 | ||
| #277 | HIGH | resolved other | 'Powershell Activity - 3083271452' along with... |
T1059
T1140
+1
|
5 | 01-03 23:21 | 01-04 00:20 | ||
| #273 | HIGH | resolved security testing | 'Network Connection - 1971152322' along with ... |
T1216
T1546.007
+27
|
949 | 01-03 14:30 | 01-08 15:36 | ||
| #272 | HIGH | resolved security testing | 'Script Activity - 3055004603' along with 5 o... |
T1059
T1218.005
+3
|
6 | 01-03 14:12 | 01-03 14:30 | ||
| #269 | HIGH | resolved security testing | 'Protection Against Security Measures Bypass ... |
T1059
T1218.010
+1
|
5 | 01-03 13:37 | 01-03 14:10 | ||
| #267 | HIGH | resolved other | 'Powershell Activity - 3990759154' along with... |
T1059
T1218.005
+3
|
7 | 01-03 13:02 | 01-03 13:30 | ||
| #265 | HIGH | resolved security testing | 'File Drop - 3732557733' along with 5 other i... |
T1059
T1098
+9
|
6 | 01-03 12:34 | 01-03 13:00 | ||
| #262 | HIGH | resolved duplicate incident | 'Powershell Activity - 3990759154' along with... |
T1003
T1059
+2
|
5 | 01-03 12:13 | 01-03 12:30 | ||
| #260 | HIGH | resolved false positive | 'Command-line arguments match Mimikatz execut... |
T1003
T1216
|
6 | 01-03 11:43 | 01-03 12:10 | ||
| #257 | HIGH | resolved security testing | 'File Drop - 3732557733' along with 5 other i... |
T1003
T1218.010
+2
|
6 | 01-03 11:03 | 01-03 11:40 | ||
| #255 | HIGH | resolved false positive | 'Regsvr32 may have run code from an untrusted... |
T1003
T1218.010
|
6 | 01-03 10:42 | 01-03 11:00 | ||
| #254 | HIGH | resolved other | 'Staged Malware Activity - 2394207323' along ... |
T1003
T1059.003
+2
|
5 | 01-03 10:35 | 01-03 10:40 | ||
| #253 | HIGH | resolved security testing | 'File Drop - 1815185192' along with 4 other i... |
T1003
T1140
+1
|
5 | 01-03 10:14 | 01-03 10:30 | ||
| #249 | HIGH | resolved other | 'Credential Gathering Protection - 122198212'... |
T1059
T1003
+3
|
7 | 01-03 09:25 | 01-03 10:10 | ||
| #247 | HIGH | resolved false positive | 'Evasion Technique - 527483761' along with 4 ... |
T1218
T1140
+2
|
5 | 01-03 09:00 | 01-03 09:20 | ||
| #245 | HIGH | resolved security testing | 'Script Activity - 3055004603' along with 5 o... |
T1059
T1003
+3
|
6 | 01-03 08:28 | 01-03 08:50 | ||
| #243 | HIGH | resolved security testing | 'Evasion Technique - 527483761' along with 6 ... |
T1059
T1546.007
+5
|
7 | 01-03 08:01 | 01-03 08:20 | ||
| #241 | HIGH | resolved known issue | 'Credential Gathering Protection - 122198212'... |
T1059
T1003
+4
|
5 | 01-03 07:40 | 01-03 08:00 | ||
| #240 | HIGH | resolved duplicate incident | 'Impair Defenses - 2363038651' along with 9 o... |
T1059
T1098
+10
|
10 | 01-03 07:23 | 01-03 07:40 | ||
| #238 | HIGH | resolved security testing | 'Regsvr32 may have run code from an untrusted... |
T1059
T1216
+5
|
10 | 01-03 06:51 | 01-03 07:20 | ||
| #235 | HIGH | resolved duplicate incident | 'File Drop - 1815185192' along with 4 other i... |
T1003
T1140
+1
|
5 | 01-03 06:30 | 01-03 06:50 | ||
| #232 | HIGH | resolved security testing | 'Persistency - 1983659418' along with 4 other... |
T1059.003
T1059
+2
|
5 | 01-03 06:17 | 01-03 06:30 | ||
| #231 | HIGH | resolved security testing | 'Regsvr32 may have run code from an untrusted... |
T1562.004
T1003
+4
|
6 | 01-03 06:02 | 01-03 06:10 | ||
| #230 | HIGH | resolved security testing | 'Command-line arguments match Mimikatz execut... |
T1059
T1562.001
+3
|
6 | 01-03 05:52 | 01-03 06:00 | ||
| #228 | HIGH | resolved security testing | 'Regsvr32 may have run code from an untrusted... |
T1059
T1216
+4
|
8 | 01-03 05:39 | 01-03 05:50 | ||
| #227 | HIGH | resolved security testing | 'Command-line arguments match Mimikatz execut... |
T1059
T1562.001
+3
|
7 | 01-03 05:20 | 01-03 05:30 | ||
| #225 | HIGH | resolved security testing | 'Powershell Activity - 3083271452' along with... |
T1059
T1562.001
+3
|
5 | 01-03 05:00 | 01-03 05:20 | ||
| #224 | HIGH | resolved other | 'File Drop - 3732557733' along with 4 other i... |
T1003
T1216
+2
|
5 | 01-03 04:52 | 01-03 05:00 | ||
| #223 | HIGH | resolved security testing | 'Evasion Technique - 527483761' along with 7 ... |
T1059
T1003
+6
|
8 | 01-03 04:31 | 01-03 04:50 | ||
| #220 | HIGH | resolved other | 'Possible LSASS memory dump' along with 7 oth... |
T1003
T1140
+2
|
8 | 01-03 04:10 | 01-03 04:30 | ||
| #218 | HIGH | resolved security testing | 'Command-line arguments match Mimikatz execut... |
T1003
T1218.010
+1
|
8 | 01-03 03:55 | 01-03 04:10 | ||
| #215 | HIGH | resolved security testing | 'File Drop - 1815185192' along with 6 other i... |
T1552.001
T1140
+3
|
7 | 01-03 03:30 | 01-03 03:50 | ||
| #214 | HIGH | resolved other | 'Command-line arguments match Mimikatz execut... |
T1003
T1140
+1
|
8 | 01-03 03:21 | 01-03 03:30 | ||
| #212 | HIGH | resolved security testing | 'Powershell Activity - 3083271452' along with... |
T1059
T1562.001
+2
|
5 | 01-03 02:50 | 01-03 03:20 | ||
| #211 | HIGH | resolved other | 'Regsvr32 may have run code from an untrusted... |
T1059
T1098
+7
|
5 | 01-03 02:42 | 01-03 02:50 | ||
| #210 | HIGH | resolved security testing | 'Command-line arguments match Mimikatz execut... |
T1059
T1098
+8
|
5 | 01-03 02:32 | 01-03 02:40 | ||
| #207 | HIGH | resolved known issue | 'Protection Against Security Measures Bypass ... |
T1003
T1059
+1
|
6 | 01-03 02:18 | 01-03 02:30 | ||
| #205 | HIGH | resolved security testing | 'SYNC - Credential Gathering - 1082701410' al... |
T1003
T1218.010
+2
|
7 | 01-03 01:22 | 01-03 02:10 | ||
| #202 | HIGH | resolved security testing | 'Protection Against Security Measures Bypass ... |
T1059
T1098
+6
|
5 | 01-03 01:01 | 01-03 01:10 | ||
| #201 | HIGH | resolved security testing | 'Staged Malware Activity - 2394207323' along ... |
T1003
T1059.003
+2
|
7 | 01-03 00:54 | 01-03 01:00 | ||
| #200 | HIGH | resolved other | 'Powershell Activity - 3990759154' along with... |
T1003
T1059
+2
|
5 | 01-03 00:40 | 01-03 00:50 | ||
| #197 | HIGH | resolved known issue | 'Protection Against Security Measures Bypass ... |
T1059
T1140
+1
|
5 | 01-03 00:15 | 01-03 01:20 | ||
| #196 | HIGH | resolved false positive | 'Protection Against Security Measures Bypass ... |
T1059
T1003
+3
|
7 | 01-02 23:58 | 01-03 00:40 | ||
| #194 | HIGH | resolved security testing | 'Network Connection - 1971152322' along with ... |
T1059
T1218.005
+5
|
5 | 01-02 23:30 | 01-02 23:50 | ||
| #192 | HIGH | resolved other | 'Powershell Activity - 3990759154' along with... |
T1059
T1140
+1
|
5 | 01-02 23:09 | 01-03 00:10 | ||
| #190 | HIGH | resolved security testing | 'File Drop - 2775215878' along with 6 other i... |
T1059
T1003
+5
|
7 | 01-02 22:48 | 01-02 23:30 | ||
| #189 | HIGH | resolved security testing | 'File Drop - 3732557733' along with 6 other i... |
T1059
T1003
+4
|
7 | 01-02 20:42 | 01-02 21:10 | ||
| #185 | HIGH | resolved security testing | 'Evasion Technique - 527483761' along with 27... |
T1059
T1003
+4
|
28 | 01-02 20:25 | 01-02 22:44 | ||
| #184 | HIGH | resolved security testing | 'Powershell Activity - 3990759154' along with... |
T1003
T1059
+2
|
5 | 01-02 20:21 | 01-02 20:40 | ||
| #179 | HIGH | resolved security testing | 'Protection Against Security Measures Bypass ... |
T1059
T1059.001
|
4 | 01-02 19:24 | 01-02 20:11 | ||
| #177 | HIGH | resolved security testing | 'Credential Gathering Protection - 122198212'... |
T1059
T1216
+4
|
5 | 01-02 19:18 | 01-02 19:50 | ||
| #174 | HIGH | resolved security testing | 'Command-line arguments match Mimikatz execut... |
T1003
|
5 | 01-02 18:36 | 01-02 19:16 | ||
| #173 | HIGH | resolved security testing | 'Network Connection - 1971152322' along with ... |
T1059
T1218.005
+5
|
9 | 01-02 18:21 | 01-02 19:16 | ||
| #170 | HIGH | resolved security testing | 'File Drop - 4219385159' along with 9 other i... |
T1003
T1218
+3
|
10 | 01-02 17:54 | 01-02 18:32 | ||
| #167 | HIGH | resolved security testing | 'Script Activity - 3055004603' along with 9 o... |
T1059
T1098
+8
|
10 | 01-02 17:26 | 01-02 17:41 | ||
| #165 | MEDIUM | resolved security testing | 'WildFire Malware' along with 2 other issues ... | - | 3 | 01-02 17:18 | 01-02 17:41 | ||
| #164 | HIGH | resolved security testing | 'Protection Against Security Measures Bypass ... |
T1059
T1071.001
+4
|
4 | 01-02 16:58 | 01-02 17:24 | ||
| #161 | HIGH | resolved security testing | 'Network Connection - 1971152322' along with ... |
T1055
T1552.001
+5
|
5 | 01-02 16:30 | 01-02 16:57 | ||
| #154 | HIGH | resolved security testing | 'Powershell Activity - 3990759154' along with... |
T1059
T1098
+15
|
30 | 01-02 14:59 | 01-02 16:29 | ||
| #150 | HIGH | resolved security testing | 'Regsvr32 may have run code from an untrusted... |
T1218.010
|
2 | 01-02 14:52 | 01-02 14:57 | ||
| #139 | HIGH | resolved security testing | 'File Drop - 1815185192' along with 6 other i... |
T1003
T1140
+1
|
7 | 01-02 14:38 | 01-02 14:50 | ||
| #128 | HIGH | resolved security testing | 'Protection Against Security Measures Bypass ... |
T1059
T1140
+1
|
6 | 01-02 14:02 | 01-02 14:30 | ||
| #123 | HIGH | resolved security testing | 'File Drop - 2775215878' along with 4 other i... |
T1059
T1055
+5
|
5 | 01-02 13:49 | 01-02 14:20 | ||
| #100 | HIGH | resolved security testing | 'Staged Malware Activity - 2394207323' along ... |
T1059
T1218.005
+14
|
18 | 01-02 12:04 | 01-02 13:34 | ||
| #93 | HIGH | resolved security testing | 'Powershell Activity - 3083271452' along with... |
T1059
T1003.002
+4
|
17 | 01-02 11:58 | 01-02 13:34 | ||
| #91 | HIGH | resolved security testing | 'Regsvr32 may have run code from an untrusted... |
T1003
T1218.010
+1
|
5 | 01-02 11:50 | 01-02 11:56 | ||
| #87 | HIGH | resolved security testing | 'Evasion Technique - 1720575843' along with 5... |
T1059
T1055
+4
|
6 | 01-02 11:36 | 01-02 11:46 |
Showing 100 of 123 filtered (2142 total)
Last refresh: 2026-01-20 22:00:21