Findings
Generator
Configuration
Lucidum Reverse
Architecture
Statistics
← All Findings
Vendor:
CrowdStrike Falcon
FIN-570
Weight:
5
4
3
2
1
Confidence:
High
Medium
Low
Edited:
2026-03-06 18:14
Verified
What It Detects
This asset has the CrowdStrike Falcon sensor disabled AND has known CVE vulnerabilities. The host is both exploitable (known vulnerabilities) and unprotected (no endpoint detection). Exploit attempts against these vulnerabilities will not be detected, blocked, or alerted on.
MITRE ATT&CK Techniques
Comma-separated, e.g. T1078, T1190
Checks
read-only
Field
Operator
Value
Agent Enabled (True/False)
equals
False
CVE List
not_empty
Remediation
×
×
×
×
×
+ Add item
Why It Matters
×
×
×
+ Add item
Save Changes
Export Lucidum