Microsoft Sentinel Analytic Rules
cloudbrothers.infoAzure Sentinel RepoToggle Dark/Light/Auto modeToggle Dark/Light/Auto modeToggle Dark/Light/Auto modeBack to homepage

Impair Process Control

Overview

Rule NameidRequired data connectors
Excessive Login Attempts (Microsoft Defender for IoT)f5217b4c-3f1f-4d89-b4f3-5d7581da1c1cIoT
Illegal Function Codes for ICS traffic (Microsoft Defender for IoT)70be4a31-9d2b-433b-bdc7-da8928988069IoT
Radiflow - Platform Alertff0c781a-b30f-4acf-9cf1-75d7383d66d1RadiflowIsid
Radiflow - Policy Violation Detecteda3f4cc3e-2403-4570-8d21-1dedd5632958RadiflowIsid
Radiflow - Unauthorized Command in Operational Device4d90d485-6d47-417e-80ea-9cf956c1a671RadiflowIsid