Detectors
Every Cortex detection rule the toolbox knows about — analytics alerts, BIOCs and correlation rules — in one filterable set.
1088 detectors match the current filters.
Download CSVSeverity mix
- Informational 1088 100%
Detector type
- Analytics 146 13%
- Analytics BIOC 687 63%
- BIOC 255 23%
Data sources
-
AWS Audit Log 208
-
XDR Agent 194
-
Azure Audit Log 157
-
Gcp Audit Log 123
Showing the top 10 of 33; the filter rail lists them all.
What each module brings
See the ATT&CK matrix for this selection →Detectors this selection gains from each licensable module, how much of ATT&CK they cover, and how their severities split. Click a module to keep only its detectors.
| Module | Licensed by | Detectors | Tactics covered | Severity mix |
|---|---|---|---|---|
| Platform Analytics | Included with the platform | 474 | 14 |
474 informational
|
| Cortex Cloud | Cloud Runtime Security (CRS) | 328 | 13 |
328 informational
|
| Identity Threat Detection (ITDR) | Identity Threat Detection (ITDR) | 120 | 13 |
120 informational
|
| Identity Analytics | Included with the platform | 115 | 10 |
115 informational
|
| Email Security | Email Security | 63 | 9 |
63 informational
|