SYNOTI v1.11.33
AR
XDR
Alerts
Hygiene Score
78/100
4 this quarter
Exposed Services
3
RDP · SSH · SMTP
Watchlist IOCs
214
8 added / 24h
Detections / 24h
2,340
12% noise reduced

Security Events

TimeAgentRuleSeverityMITRE
18:42:11www-0386605CriticalT1190
18:40:44ws-055503HighT1014
18:38:07proxy-02577MediumT1110
18:33:40mail-0187103HighT1021

Detection Sources

MITRE Tactics

Alert Rate

Attack Surface · hygiene 78/100

View all
RDP 3389 — 10.20.4.27
96%
SSH 22 — 10.20.4.31
87%
SMTP 25 — mail-proxy-01
64%
HTTPS 443 — www-03
58%
MSSQL 1433 — backup-02
41%

Watchlist

IndicatorTypeThreatSeen
203.0.113.45IPLockBit C212m
e3b0c442…a429HashConti sample31m
payroll-okta[.]comDomainPhishing1h
update-svc[.]netDomainMalware dist3h
198.51.100.34IPTor exit5h

Recent Activity

View all
Ransomware behavior blocked on mail-01 CRITICAL
Playbook PB-041 auto-contained host · Ryuk TTPs matched
2m
SSH brute force from 203.0.113.42 HIGH
42 failed logins in 60s · source IP blocked
9m
Threat hunt matched T1059.001 on www-02
PowerShell obfuscation · confidence 0.91
14m
SCA scan completed on 128 hosts
98.2% compliance · 11 benchmarks passed
23m
Firewall rule 'BLK-3321' propagated to 14 nodes
0.4s propagation · geo-blocked 12 CIDRs
31m
Sandbox verdict — 'invoice_9921.exe' malicious
Heuristic score 96 · family 'Emotet'
44m