LetsDefend Monitoring Alert

Account Discovery Attempt Detected

Apr, 25, 2024, 06:43 AM

Event ID: 251

Event Time: Apr, 25, 2024, 06:43 AM

Rule Name: SOC276 - Account Discovery Attempt Detected

Alert Type: Unauthorized Access

MITRE Technique:
T1078 - Initial Access - Valid Accounts,
T1110 - Credential Access - Brute Force,
T1133 - Initial Access - External Remote Services,
T1087 - Discovery - Account Discovery,
T1059.004 - Execution - Command and Scripting Interpreter: Unix Shell,

Severity: Medium

Incident Responder

2025 © LetsDefend

45305 Catalina ct. Suite 150, Sterling VA 20166