8.1 KiB
8.1 KiB
1 | TimeGenerated | EventVendor | EventProduct | ActivityUUIDs | AlertId | Description | DeviceIds | Severity | Status | Time | Title | Type |
---|---|---|---|---|---|---|---|---|---|---|---|---|
2 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "Dj1h9IIBAAAAAFMFpHLj", "FD1h9IIBAAAAAFMFpHLj" ] | 33 | A medical devices has been detected connecting to a non-medical network which can also include the Guest network segment. | [ 599, 600 ] | Medium | Unhandled | 8/24/2022, 5:43:27.236 PM | [Risk] Medical Device Connected to Non-Medical Network | System Policy Violation |
3 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "Ez1h9IIBAAAAAFMFsfTj" ] | 179 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 3217 ] | Medium | Unhandled | 8/24/2022, 8:31:29.405 PM | [Risk] Vulnerable Browser Usage | System Policy Violation |
4 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "Ej1h9IIBAAAAAFMFpHLj", "ED1h9IIBAAAAAFMFpHLj" ] | 122 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2162, 2165 ] | Medium | Unhandled | 8/24/2022, 9:01:19.968 PM | [Suspicious/OT] PLC Hardware Change | System Policy Violation |
5 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "CD1h9IIBAAAAAFMFsvkp", "dj1h9IIBAAAAAFMFsvcS" ] | 193 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 3229 ] | High | Unhandled | 8/24/2022, 10:35:58.100 PM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |
6 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "LD1h9IIBAAAAAFMFpHLk", "Mj1h9IIBAAAAAFMFpHLl", "Lj1h9IIBAAAAAFMFpHLl", "OD1h9IIBAAAAAFMFpHLl", "MT1h9IIBAAAAAFMFpHLl" ] | 121 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2162, 2167 ] | Medium | Unhandled | 8/24/2022, 11:02:24.361 PM | [Suspicious/OT] PLC Hardware Change | System Policy Violation |
7 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "Nz1h9IIBAAAAAFMFpHLl", "Kj1h9IIBAAAAAFMFpHLk", "ND1h9IIBAAAAAFMFpHLl", "IT1h9IIBAAAAAFMFpHLk", "Jz1h9IIBAAAAAFMFpHLk", "KD1h9IIBAAAAAFMFpHLk" ] | 120 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2162, 2167 ] | Medium | Unhandled | 8/24/2022, 11:02:24.361 PM | [Suspicious/OT] PLC Hardware Change | System Policy Violation |
8 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "_T1h9IIBAAAAAFMFpHHh", "_j1h9IIBAAAAAFMFpHHi", "AD1h9IIBAAAAAFMFpHLi", "_z1h9IIBAAAAAFMFpHHi" ] | 119 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2163 ] | High | Unhandled | 8/25/2022, 12:19:58.992 AM | Chatsworth Restricted ICS Devices Connected to the Internet | System Policy Violation |
9 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "0D1h9IIBAAAAAFMFqoO6" ] | 141 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2196 ] | High | Unhandled | 8/25/2022, 2:39:31.825 AM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |
10 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "qz1h9IIBAAAAAFMFqXSg" ] | 140 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2192 ] | High | Unhandled | 8/25/2022, 2:39:35.825 AM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |
11 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "6T1h9IIBAAAAAFMFqXWz" ] | 139 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2182 ] | High | Unhandled | 8/25/2022, 2:39:39.825 AM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |
12 | 9/7/2022, 7:17:11.023 AM | ArmisAlerts | ArmisAlerts | [ "yD1h9IIBAAAAAFMFqoO5" ] | 138 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2213 ] | High | Unhandled | 8/25/2022, 2:40:00.825 AM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |
13 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "uz1h9IIBAAAAAFMFqn1a" ] | 137 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2187 ] | High | Unhandled | 8/25/2022, 2:40:28.825 AM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |
14 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "vTxh9IIBAAAAAFMFj6qG", "vjxh9IIBAAAAAFMFj6qG" ] | 18 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 963, 962 ] | Medium | Unhandled | 8/25/2022, 3:02:07.747 AM | Network bridge detected | Anomaly Detection |
15 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "Zzxh9IIBAAAAAFMFj6Uq" ] | 14 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 906 ] | High | Unhandled | 8/25/2022, 3:13:13.391 AM | [Risk] Ripple 20 Risk Factors Detected | System Policy Violation |
16 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "cD1h9IIBAAAAAFMFnhH0", "cT1h9IIBAAAAAFMFnhH0" ] | 76 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 1672 ] | Medium | Unhandled | 8/25/2022, 3:28:29.974 AM | Unencrypted Credentials Activities | System Policy Violation |
17 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "cz1h9IIBAAAAAFMFnhH0", "cj1h9IIBAAAAAFMFnhH0" ] | 77 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 1673 ] | Medium | Unhandled | 8/25/2022, 3:28:29.974 AM | Unencrypted Credentials Activities | System Policy Violation |
18 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "bz1h9IIBAAAAAFMFnhH0", "bj1h9IIBAAAAAFMFnhH0" ] | 75 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 1671 ] | Medium | Unhandled | 8/25/2022, 3:28:29.974 AM | Unencrypted Credentials Activities | System Policy Violation |
19 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "bD1h9IIBAAAAAFMFnhH0", "bT1h9IIBAAAAAFMFnhH0" ] | 74 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 1670 ] | Medium | Unhandled | 8/25/2022, 3:28:29.974 AM | Unencrypted Credentials Activities | System Policy Violation |
20 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "VTxh9IIBAAAAAFMFj6p_" ] | 19 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 966, 967 ] | Medium | Unhandled | 8/25/2022, 4:30:13.747 AM | Corporate device transmitted large amount of unencrypted data | Anomaly Detection |
21 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "sT1h9IIBAAAAAFMFrrc2", "qT1h9IIBAAAAAFMFrrc1", "rD1h9IIBAAAAAFMFrrc1" ] | 176 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2868 ] | Medium | Unhandled | 8/25/2022, 6:14:11.062 AM | Security: Unencrypted Credentials over HTTP (Excludes KG Destinations) | System Policy Violation |
22 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "0j1h9IIBAAAAAFMFsfTs", "7z1h9IIBAAAAAFMFsfX9", "Kj1h9IIBAAAAAFMFsfXx", "FT1h9IIBAAAAAFMFsfb_", "bz1h9IIBAAAAAFMFsfX2" ] | 186 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 3226 ] | High | Unhandled | 8/25/2022, 8:09:52.366 AM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |
23 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "MT1h9IIBAAAAAFMFpHHS", "Lz1h9IIBAAAAAFMFpHHS" ] | 114 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2156, 2152 ] | Medium | Unhandled | 8/25/2022, 8:27:36.528 AM | [MITRE ATT&CK | ICS] T0886 | Initial Access, Lateral Movement | Remote Services | System Policy Violation |
24 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "MD1h9IIBAAAAAFMFpHHS", "Lj1h9IIBAAAAAFMFpHHS" ] | 113 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 2156, 2152 ] | Medium | Unhandled | 8/25/2022, 8:27:36.629 AM | [MITRE ATT&CK | ICS] T0886 | Initial Access, Lateral Movement | Remote Services | System Policy Violation |
25 | 9/7/2022, 7:17:11.039 AM | ArmisAlerts | ArmisAlerts | [ "fDxh9IIBAAAAAFMFkLyC" ] | 22 | The Armis security platform has detected a violation of a policy and generated an alert. | [ 1049 ] | High | Unhandled | 8/25/2022, 10:22:15.129 AM | [Risk] Credentials Intercepted in Clear Text | System Policy Violation |