Security Dashboard
foyl SecIntel · Live view · Refreshed just now
Events / Min
847
↑ 14% above baseline
Active Alerts
0
Current merged alert queue
Open Investigations
0
Canonical and analyst-created cases
Generated Samples (7d)
0
Rolling centralized fact stream
Log Ingest Volume - Last 24 Hours
Normal
Incident spike
Recent Alerts
View all →
Ingest Sources
| Source | Events | Share | |
|---|---|---|---|
| Microsoft Entra ID | 142,847 | 32% | |
| Exchange Online↑ spike | 98,233 | 22% | |
| CrowdStrike Falcon | 87,441 | 20% | |
| Palo Alto NGFW | 76,229 | 17% | |
| Protective DNS | 65,882 | 15% | |
| SecIntel VPN Gateway | 43,117 | 10% | |
| Defender for Cloud Apps | 31,004 | 7% | |
| SecIntel SCADA Monitorreduced | 28,773 | 6% |
MITRE ATT&CK Coverage
28 active rules →
Initial Access
3
Execution
2
Persistence
3
Priv. Escalation
2
Credential Access
2
Discovery
2
Lateral Movement
1
Collection
2
Exfiltration
3
Impact
2
ICS / OT
4
Open Investigations
View all →