Skip to main content

Alert Types Classified as Composite Category

Overview

Watch Video Summary >>

A composite alert consists of multiple Lacework detection mechanisms. Lacework generates composite alerts when it detects potential intrusions in your cloud entities. Each alert provides insight into the suspected compromise such as users, machines, or IP addresses.

With composite alerts, Lacework further alleviates the alert fatigue by automatically correlating disparate events across multiple detection sources into higher-level objects.

Alert List

The following table lists all the composite alerts.

Alert NameAlert Type
Potential cloud-native ransomware attackIncidentPotentialCloudNativeRansomwareAttack
Potential cryptomining attack on hostIncidentPotentialHostCryptominingAttack
Potential AWS defense evasionIncidentPotentialDefenseEvasionAws
Potential cloud-native cryptomining attackIncidentPotentialCloudNativeCryptominingAttack
Potentially compromised AWS keysIncidentPotentiallyCompromisedAWSKeys

Video Summary