Detectors

Every Cortex detection rule the toolbox knows about — analytics alerts, BIOCs and correlation rules — in one filterable set.

171 detectors match the current filters. tactic: TA0001 ✕

Download CSV

Severity mix

Detector type

Data sources

Showing the top 10 of 30; the filter rail lists them all.

Detectors this selection gains from each licensable module, how much of ATT&CK they cover, and how their severities split. Click a module to keep only its detectors.

Module Licensed by Detectors Tactics covered Severity mix
Identity Analytics Included with the platform 44 7
28 informational · 12 low · 1 medium · 3 high
Cortex Cloud Cloud Runtime Security (CRS) 38 9
26 informational · 5 low · 4 medium · 3 high
Platform Analytics Included with the platform 37 9
18 informational · 15 low · 2 medium · 2 high
Identity Threat Detection (ITDR) Identity Threat Detection (ITDR) 29 9
21 informational · 8 low
Email Security Email Security 27 5
18 informational · 8 low · 1 medium