This tables contains attack paths that are being generated by Microsoft Defender for Cloud in order to detect potential breach paths of attackers to your cloud environment.
Schema
Name
Description
Type
_BilledSize
Double
_IsBillable
String
_ResourceId
A unique identifier for the resource that the record is associated with
String
_SubscriptionId
A unique identifier for the subscription that the record is associated with
String
AdditionalRemediationSteps
The manual remediation steps of the attack path.
String
Assessments
The assessments mapped to the attack path.
Object
AttackPathId
The ID of the attack path.
String
AttackStory
The attack story.
String
Description
The description of the attack path.
String
DisplayName
The display name of the attack path.
String
EntrypointId
The ID of the attack path enry point.
String
Mitre
MITRE mapping of the path.
String
Path
The nodes, edges & insights that create the path.
Object
PotentialImpact
The potenrial impact of the attack path.
String
RiskFactors
The risk factors of the attack path.
Object
RiskLevel
The risk level of the attack path.
String
SourceSystem
String
TargetId
The ID of the attack path target.
String
TenantId
Unique identifier of the tenant into which the data connector ingests data.