Parsers and Generated Fields

Tag Fields Created by Parser cef-latest
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser cef-latest
Vendor FieldCPS FieldDescription
Vendor.ext.CtdDestinationIpdestination.ip 
Vendor.ext.CtdFilePathfile.path 
Vendor.ext.CtdMessage;message 
Vendor.ext.CtdSourceIpsource.ip 
Vendor.ext.CtdCveIdvulnerability.id 
Vendor.ext.CtdCveScorevulnerability.score.base 
Tag Fields Created by Parser claroty-ctd
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser claroty-ctd
Vendor FieldCPS FieldDescription
Vendor.ext.CtdDestinationIpdestination.ip  
Vendor.ext.CtdFilePathfile.path  
Vendor.ext.CtdMessagemessage  
Vendor.ext.CtdSourceIpsource.ip  
Vendor.ext.CtdCveIdvulnerability.id  
Vendor.ext.CtdCveScorevulnerability.score.base