Reasons
- Detected activity is a limited amount of firewall scenarios.
- Threat activity was observed from a single node only.
MITRE ATT&CK Mappings
- Tactics: Reconnaissance
- Techniques: T1595
Evidence
- Nodes observed: 1
- Severity: LOW
- TTL remaining: 19h 22m