Use Cases
How specific attacks show up in specific log formats, and how LogTriage detects each one — grounded in the same parsers and scoring logic the product actually runs.
Detecting Business Email Compromise in Microsoft 365 Audit Logs
Detecting C2 Beaconing in CrowdStrike Falcon Telemetry
Detecting Credential Stuffing / Brute Force in Azure AD Sign-In Logs
Detecting Credential Stuffing in nginx Access Logs
Detecting Credential Stuffing in Okta System Logs
Detecting IAM Privilege Escalation in AWS CloudTrail
Detecting Impossible Travel in Azure AD Sign-In Logs
Detecting MFA Bypass in Azure AD Sign-In Logs
Detecting Port Scanning in AWS VPC Flow Logs
Detecting Reconnaissance Sweeps in nginx Logs
Detecting Secret Exfiltration in Kubernetes Audit Logs
Detecting SQL Injection and Data Exfiltration in nginx Logs