Release 17 - Out-of-the-box alerts
Detection name | Detection description | Devo table / Data source / Category | Update |
| This search looks for Collective Defense matches in authentication data. |
| New Alert |
| This search looks for Collective Defense matches in firewall data. |
| New Alert |
| This search looks for Collective Defense matches in firewall data. |
| New Alert |
| This search looks for Collective Defense matches in proxy data. |
| New Alert |
| This search looks for Collective Defense matches in proxy data. |
| New Alert |
| This search looks for Collective Defense matches in web data. |
| New Alert |
| This search looks for Collective Defense matches in proxy data. |
| New Alert |
| This search looks for Collective Defense matches in o365 data. |
| New Alert |
| This search looks for Collective Defense matches in AWS data. |
| New Alert |
| This search looks for Collective Defense matches in Gsuite data. |
| New Alert |
| Detects brute force attacks via the Palo Alto firewalls. A source IP address attempted and failed to authenticate multiple times while providing multiple usernames. |
| Alert field naming update |