Parsers and Generated Fields

Tag Fields Created by Parser cef-latest
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser cef-latest
Source FieldCPS Field
Vendor.ext.CtdDestinationIpdestination.ip
Vendor.ext.CtdFilePathfile.path
Vendor.ext.CtdMessage;message
Vendor.ext.CtdSourceIpsource.ip
Vendor.ext.CtdCveIdvulnerability.id
Vendor.ext.CtdCveScorevulnerability.score.base
Tag Fields Created by Parser claroty-ctd
  • #Cps.version

  • #Vendor

  • #ecs.version

  • #event.dataset

  • #event.kind

  • #event.module

  • #event.outcome

  • #observer.type

Fields Identified by Parser claroty-ctd
Source FieldCPS Field
Vendor.ext.CtdDestinationIpdestination.ip
Vendor.ext.CtdFilePathfile.path
Vendor.ext.CtdMessagemessage
Vendor.ext.CtdSourceIpsource.ip
Vendor.ext.CtdCveIdvulnerability.id
Vendor.ext.CtdCveScorevulnerability.score.base