Definitions[edit | edit source]

An event is

Overview[edit | edit source]

Events include a user connecting to a file share, a server receiving a request for a web page, a user sending email, and a firewall blocking a connection attempt.[4] They "[s]ometimes provides an indication that an incident is occurring or at least raise the suspicion that an incident may be occurring."[5]

References[edit | edit source]

See also[edit | edit source]

Community content is available under CC-BY-SA unless otherwise noted.