← All Findings
Vendor: SentinelOne Singularity XDR FIN-515 Weight: Confidence:

What It Detects

MITRE ATT&CK Techniques

Comma-separated, e.g. T1078, T1190

Checks read-only

FieldOperatorValue
Asset Type == desktop
First Time Seen older than 180 days
Public IP Address is not empty
Source User Name is empty

Remediation

Why It Matters

Notes read-only

LDG fields used:

Supporting endpoints:

Export Lucidum