Skip to content

[CREATE] detection rule 3 #23

@poslogica

Description

@poslogica

Rule Name

detection rule 3

Rule Status

Enabled-PreProd

Rule Description

detection rule 3

References


Author

willem

Author Date

2025-12-02

Modified By

No response

Modified Date

No response

MITRE ATT&CK Mapping


Vendor Data Sources

  • Microsoft 365 (O365)
  • AWS
  • Azure
  • Google Cloud Platform (GCP)
  • Palo Alto Networks
  • Cisco
  • Fortinet
  • CrowdStrike
  • SentinelOne
  • Okta
  • Other (specify below)

Custom Vendor (if Other selected)

No response

Service Data Sources

Test

Detection Query Before

before

Detection Query After

after

Detection Query Condition

aaaa

Detection Query Suppress

aaaaaa

Severity

Medium

Outcome

aaaaaa

Review Last Reviewed

2025-12-02

Review Next Review

2026-12-02

Expiry Date

No response

Metadata

Metadata

Assignees

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions