Brute Force SSH Attempt Detected
14 min ago
Host: prod-db-01 (192.168.1.42) · 2,400+ failed auth attempts from 3 IPs
Critical
TechFlow Inc
MITRE: T1110
Suspicious Outbound Data Transfer
1h 22m ago
Host: ws-marketing-04 · 2.4GB to unknown external IP · Anomalous pattern
Critical
Meridian Health
MITRE: T1041
Expired TLS Certificate on Public Endpoint
3h ago
api.client-portal.io · Certificate expired 2 days ago · Auto-renewal failed
High
Apex Financial
Privilege Escalation Attempt
5h ago
User: j.martinez@techflow.io attempted sudo on restricted host. Blocked by policy.
High
TechFlow Inc
MITRE: T1068
Unusual Login Location
8h ago
User: a.chen@meridian.com logged in from Bucharest, Romania. Normal: San Francisco.
Medium
Meridian Health