Alerts
Real-time threat & alert feed · auto-refresh 30s
Encrypted file staging detected on endpoint ACME-WS-04. Lateral movement blocked.
847 failed SSH login attempts from single source in 4 minutes. Source IP blocked.
Anomalous outbound transfer of 4.2GB to unknown external endpoint. Session terminated.
UDP flood targeting public IP. 2.4 Gbps traffic scrubbed upstream.
User navigated to lookalike domain "acme-corp.support". DNS sinkholed.
Internal account attempted domain admin escalation via CVE-2023-21554. Blocked.
Sequential port scan of 65535 ports. Source logged and rate-limited.
Beacon pattern to known C2 infrastructure. Host quarantined, traffic blocked.
Blind SQL injection probes on web application. WAF rule activated, 203 requests blocked.
Self-signed certificate detected on internal service. Certificate replaced automatically.
Bulk download of PII records outside business hours by privileged account. Under review.
Encoded payloads detected in DNS TXT records. Outbound DNS restricted.