← All Findings
Vendor: Microsoft Defender for Endpoint FIN-266 Weight: Confidence: Edited: 2026-03-06 09:03

What It Detects

MITRE ATT&CK Techniques

Comma-separated, e.g. T1078, T1190

Checks read-only

FieldOperatorValue
osPlatform in ['Windows7', 'Windows8', 'Windows10', 'WindowsServer2008R2', 'WindowsServer2012R2', 'WindowsServer2016']

Remediation

Why It Matters

Export Lucidum