THREAT HUNT
radar
RadarThreatHuntCancelled
Severity | Status | Audit Event |
Info | Success | Yes |
RadarThreatHuntCsvDownload
Severity | Status | Audit Event |
Info | Success | Yes |
RadarThreatHuntStarted
Severity | Status | Audit Event |
Info | Success | Yes |
RadarTurboThreatHuntStarted
Severity | Status | Audit Event |
Info | Success | Yes |
threat_hunt
ThreatHuntAborted
Threat hunt ${huntName} was aborted due to file match limit exceeded. Start a threat hunt with narrower IOCs or lower number of objects to have the file match count within the allowed limit.
Severity | Status | Audit Event |
Critical | Canceled | No |
ThreatHuntFailed
Severity | Status | Audit Event |
Critical | Failure | No |
ThreatHuntPartiallySucceeded
Threat hunt ${huntName} partially succeeded with ${objSucceeded} objects successful, ${objPartiallySucceeded} objects partially successful, and ${objFailed} objects failing. There were ${objectMatches} object matches and ${fileMatches} file matches.
Severity | Status | Audit Event |
Critical | Failure | No |
ThreatHuntStarted
Severity | Status | Audit Event |
Info | TaskSuccess | No |