Attack Path Widgets
Epiphany's dashboard includes widgets to monitor attack paths.
Last updated
Epiphany's dashboard includes widgets to monitor attack paths.
Last updated
Most dashboard widgets will provide helpful information as to their purpose if you roll your mose over the Information icon .
Epiphany's attack path widgets provide information to help you identify and remediate attack paths that are a threat to your environment. A broken path is the heart to Epiphany's exposure management philosophy. If you remove the attacker's opportunity, you remove their ability to leverage it against you.
Top Paths is the most important widget you will use as an analyst. It is your birds-eye view of the most dangerous (and materially impacting) attack paths across your environment.
It presents paths based on administrative ("Admin") exposure, criticality, and then generic exposure of a potentially high-value application.
You can use your mouse to zoom in and out on the path map, so you can see the "big picture" view of an attack path and then zoom in to see detail about the users and devices on the path.
Top Recommendations is the second most important widget in the Epiphany dashboard. It shows you the overall most impactful changes you can make across your environment, measured by paths broken. In this widget, rolling your mouse over the information icon shows detailed information about the what was detected and the impact of not addressing Epiphany's recommendation. In the image below, the recommendation at the top of the widget shows an example of this.
Top Recommendations is also the gateway to Epiphany’s ticketing and workflow functionality. This widget lists the top recommendations for you to work on, in order of importance. For each recommendation, Epiphany shows:
A recommendation for action to take. For example “Prevent name@domain.com logging in to device” or “Remove admin rights from name@domain.com.”
A panel with an icon for a single person or multiple people, indicating whether the recommendation applies to a single person or a group.
Fields indicating the status of the recommendation.
Icons you can click on to take action, giving you the ability to further manage your organization’s workflow: Ticket: Create a ticket for the action. Assign: tbd. Notify: tbd. Accept: tbd.