Skip to content

Commit ccf839a

Browse files
authored
Merge pull request #190105 from memildin/patch-15
Added "(alert type)" to one table heading
2 parents 510311e + bc31147 commit ccf839a

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

articles/defender-for-cloud/alerts-reference.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -529,7 +529,7 @@ Microsoft Defender for Containers provides security alerts on the cluster level
529529

530530
[Further details and notes](other-threat-protections.md#network-layer)
531531

532-
| Alert | Description | MITRE tactics<br>([Learn more](#intentions)) | Severity |
532+
| Alert (alert type) | Description | MITRE tactics<br>([Learn more](#intentions)) | Severity |
533533
|-------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|:--------------------------------------------:|----------|
534534
| **Network communication with a malicious machine detected**<br>(Network_CommunicationWithC2) | Network traffic analysis indicates that your machine (IP %{Victim IP}) has communicated with what is possibly a Command and Control center. When the compromised resource is a load balancer or an application gateway, the suspected activity might indicate that one or more of the resources in the backend pool (of the load balancer or application gateway) has communicated with what is possibly a Command and Control center. | Command and Control | Medium |
535535
| **Possible compromised machine detected**<br>(Network_ResourceIpIndicatedAsMalicious) | Threat intelligence indicates that your machine (at IP %{Machine IP}) may have been compromised by a malware of type Conficker. Conficker was a computer worm that targets the Microsoft Windows operating system and was first detected in November 2008. Conficker infected millions of computers including government, business and home computers in over 200 countries/regions, making it the largest known computer worm infection since the 2003 Welchia worm. | Command and Control | Medium |

0 commit comments

Comments
 (0)