Lateral Movement

Description

This threat is generated when UBA detects activity from a user (or users) that looks like possible lateral movement in the network.

Content Mapping

This content is not mapped to any local saved search. Add mapping


Use Case

Advanced Threat Detection, Security Monitoring

Category

Lateral Movement

Alert Volume

Medium (?)

SPL Difficulty

None

Journey

Stage 6

Data Sources

Windows Security
Host-based IDS
Network Communication
Anti-Virus or Anti-Malware
Authentication
IDS or IPS
DLP
Email