Detectors
Every Cortex detection rule the toolbox knows about — analytics alerts, BIOCs and correlation rules — in one filterable set.
1061 detectors match the current filters.
Download CSVSeverity mix
- Informational 687 65%
- Low 271 26%
- Medium 81 8%
- High 22 2%
Detector type
- Analytics BIOC 1061 100%
Data sources
-
XDR Agent 351
-
AWS Audit Log 215
-
Azure Audit Log 155
-
Gcp Audit Log 129
Showing the top 10 of 31; the filter rail lists them all.
What each module brings
See the ATT&CK matrix for this selection →Detectors this selection gains from each licensable module, how much of ATT&CK they cover, and how their severities split. Click a module to keep only its detectors.
| Module | Licensed by | Detectors | Tactics covered | Severity mix |
|---|---|---|---|---|
| Platform Analytics | Included with the platform | 453 | 14 |
193 informational · 183 low · 62 medium · 15 high
|
| Cortex Cloud | Cloud Runtime Security (CRS) | 338 | 13 |
291 informational · 35 low · 9 medium · 3 high
|
| Identity Analytics | Included with the platform | 112 | 12 |
75 informational · 26 low · 8 medium · 3 high
|
| Identity Threat Detection (ITDR) | Identity Threat Detection (ITDR) | 108 | 12 |
83 informational · 22 low · 2 medium · 1 high
|
| Email Security | Email Security | 67 | 8 |
53 informational · 14 low
|