Findings
Generator
Configuration
Lucidum Reverse
Architecture
Statistics
← All Findings
Vendor:
BeyondTrust Endpoint Privilege Management
FIN-789
Weight:
5
4
3
2
1
Confidence:
High
Medium
Low
Not Verified
What It Detects
Identifies BeyondTrust EPM-managed endpoints that have no group assignment. In BeyondTrust EPM, policies are applied to endpoints through group membership. Endpoints without any group assignment cannot receive policy configurations, leaving them completely unmanaged from a privilege management perspective. These endpoints operate without elevation controls, application rules, or audit policies.
MITRE ATT&CK Techniques
Comma-separated, e.g. T1078, T1190
Checks
read-only
Field
Operator
Value
Connectors
match
BeyondTrust
Data Source Details
and
[{'field': 'Asset Groups', 'operator': 'empty'}]
Remediation
×
×
×
×
+ Add item
Why It Matters
×
×
×
+ Add item
Save Changes
Export Lucidum