Findings
Generator
Configuration
Lucidum Reverse
Architecture
Statistics
← All Findings
Vendor:
SentinelOne Singularity XDR
FIN-378
Weight:
5
4
3
2
1
Confidence:
High
Medium
Low
Not Verified
What It Detects
A cloud-hosted instance with a public IP address is running an outdated SentinelOne agent. Cloud workloads are prime targets for automated scanning, and an outdated agent may miss newer cloud-targeted threats.
MITRE ATT&CK Techniques
Comma-separated, e.g. T1078, T1190
Checks
read-only
Field
Operator
Value
Public IP Address
is not empty
Cloud Account ID
is not empty
Agent Updated (True/False)
==
False
Remediation
×
×
×
×
+ Add item
Why It Matters
×
×
×
+ Add item
Notes
read-only
LDG fields used:
Public IP Address
Cloud Account ID
Agent Updated (True/False)
Save Changes
Export Lucidum