The Related Assets tab displays all assets associated with a threat. Click the column name to sort that column by ascending or descending value.
Note
Assets associated with a threat are also listed on the Explore > Entities page. You can add or remove a VIP tag from an asset from the Options column on this page. See Asset-based alert correlation table.
Column | Description |
|---|---|
Risk | The alert risk is denoted by a color: red (critical), orange (high), yellow (medium), and blue (low). |
Name | The name of the asset. Click on the name to view the alerts associated with the asset. |
Department/Group | The department to which the asset belongs, if this information is available. |
Alerts | The number of alerts related to the asset. Closed alerts are not included in this number. |
Type | The type of asset: host or user. |
Data Source | The source of the data related to the asset. |
Asset ID | The unique asset identification number. |
Last Event | The timestamp of the last event that triggered an alert related to this asset. |
Status | The status of the asset, such as "active." |