Brute Force

Brute Force

Description

This threat is generated when a single account or multiple accounts have repeated login failures followed by malicious activity such as data movement or scanning activity.

Content Mapping

This content is not mapped to any local saved search. Add mapping


Use Case

Security Monitoring

Category

Account Compromise, IAM Analytics

Alert Volume

Low

Data Availability

Bad

Journey

Stage 4

Data Sources

Box
Network Communication
Host-based IDS
IDS or IPS
Endpoint Detection and Response
Authentication
Windows Security
Web Proxy
Anti-Virus or Anti-Malware
DLP
Email