From an email alert that has a malicious URL or attachment, you can navigate to the list of Network Security alerts for the source IP addresses on which the same malicious URL or attachment was identified. This view shows all malware objects and other events that affected the source IP address for this email alert in the selected time period, including those from other URLs or attachments, other Email Security — Server alerts, and other affected source IP addresses.
On the Alerts tab, select Email > eAlerts.
Select the Malicious Emails tab.
If there are many alerts, use the Filters panel on the left edge of the page to filter by the Correlated NX Alert badge.
.png)
In the URL or Attachment column of an email alert, click the Web icon link (
).The NX > Alerts > Alerts tab displays the list of Network Security alerts from all source IP addresses on which the same malicious URL or attachment was identified.
The Network Security alerts marked with the email icon link (
) are correlated with Email Security — Server alerts.
The following example includes a malware object and callbacks for multiple malware types.
.png)