Findings
Generator
Configuration
Lucidum Reverse
Architecture
Statistics
← All Findings
Vendor:
SentinelOne Singularity XDR
FIN-522
Weight:
5
4
3
2
1
Confidence:
High
Medium
Low
Not Verified
What It Detects
A newly discovered cloud instance (within last 7 days) has no instance ID and no tag recorded. This may indicate a rogue or shadow IT cloud deployment that bypassed standard provisioning and tagging policies.
MITRE ATT&CK Techniques
Comma-separated, e.g. T1078, T1190
Checks
read-only
Field
Operator
Value
Cloud Account ID
is not empty
First Time Seen
newer than
7 days
Instance ID
is empty
Tag
is empty
Remediation
×
×
×
+ Add item
Why It Matters
×
×
×
+ Add item
Notes
read-only
LDG fields used:
Cloud Account ID
First Time Seen
Instance ID
Tag
Save Changes
Export Lucidum