← All Findings
Vendor: Microsoft Defender for Endpoint FIN-272 Weight: Confidence: Edited: 2026-03-06 09:03

What It Detects

MITRE ATT&CK Techniques

Comma-separated, e.g. T1078, T1190

Checks read-only

FieldOperatorValue
lastSeen older_than_days 30
riskScore equals High

Remediation

Why It Matters

Export Lucidum