Focus
Focus
Table of Contents

Attackers

Collects information from threat logs that are identified as network attacks due to spyware, virus, or software vulnerability. Collects the attacker's IP address and port. Also records the threat ID, app, and action the device took due to this attack.

Metric Details

Category
Threat Prevention
Daily
Telemetry Tier
Full
Equivalent CLI Command
ROOT: pan_report_gen -t threat -n 20 -ac attacker_ip,attacker_port,threatid,app,subtype,action,victim_port,misc -vc count -s count -c 'Attackers' -q 'subtype eq virus or subtype eq spyware or subtype eq vulnerability' -p last-24-hrs