Findings
Generator
Configuration
Lucidum Reverse
Architecture
Statistics
← All Findings
Vendor:
SentinelOne Singularity XDR
FIN-460
Weight:
5
4
3
2
1
Confidence:
High
Medium
Low
Not Verified
What It Detects
A cloud instance with a public IP address is not joined to any domain. Cloud instances without domain membership typically lack centralized security policy enforcement (Group Policy, conditional access) and may not be subject to corporate authentication controls. Combined with public exposure, this asset is at heightened risk of unauthorized access.
MITRE ATT&CK Techniques
Comma-separated, e.g. T1078, T1190
Checks
read-only
Field
Operator
Value
Public IP Address
is not empty
Cloud Account ID
is not empty
Domain
is empty
Remediation
×
×
×
×
+ Add item
Why It Matters
×
×
×
+ Add item
Notes
read-only
LDG fields used:
Public IP Address
Cloud Account ID
Domain
Supporting endpoints:
_web_api_agents_get
Save Changes
Export Lucidum