← All Findings
Vendor: Microsoft Defender for Endpoint FIN-259 Weight: Confidence: Edited: 2026-03-06 09:03

What It Detects

MITRE ATT&CK Techniques

Comma-separated, e.g. T1078, T1190

Checks read-only

FieldOperatorValue
isInternetFacing equals True
severity equals High
status in ['New', 'InProgress']

Remediation

Why It Matters

Export Lucidum