Using the live activity log
att&ck
, attack
, mitre
, or ttp
will appear as red tags (e.g., ttp:t1549
)
creds
or credentials
will appear as yellow tags
vuln
will appear as green tags (e.g., vulnerable:DotNetPE
)
detect
will appear as blue tags (e.g., detected
)
objective
will appear as purple tags (e.g., objective:1
)
admin
or manager
role can mute notifications from the hamburger menu in the upper-right corner of the logging page.
Notification status is also displayed in the operation logs table: