← 문제 라이브러리
Security Advanced SECURITY-095 · 16 min

SIEM parser update collapses two source IP fields and the threat hunt queries miss half the traffic

Logs are arriving, but hunting results look incomplete because the updated parser rewrote field names that saved searches still depend on.

Incident ResponsePro
시나리오

Logs are arriving, but hunting results look incomplete because the …

구독하면 이어서 볼 수 있어요

이 문제의 전체 시나리오와 점검 체크리스트, 복구 순서, 모범 풀이는 Pro 구독에서 열립니다.

구독 안내 보기