Huntress logo
Huntress
Create
Roadmap
Feedback
Managed SIEM
182
Changelog

    Boards

  • Managed EDR

  • Integrations, Webhooks, APIs

  • Managed Security Awareness Training

  • Managed ITDR (MDR for Microsoft 365)

  • Reporting & Dashboards

  • Managed SIEM

  • User and Organization/Account Management

Powered by Canny

Managed SIEM

Category

Ninja RMM Monitoring
I would sleep better at night if you guys watched my RMM logs from Ninja.
6
·

in progress

Reporting on Log Sources not Sending Data
Adding in reporting on configured data sources that stop sending data to Huntress
7
·

in progress

PowerShell Integration
Track PowerShell modules and scripts to identify anomalous/malicious activity
2
·

in progress

DattoRMM Activity Logs
Collect, parse, and store activity logs from DattoRMM.
3
·

in progress

Ingest PowerShell logs
Ingest powershell data for auditing and detection purposes. Malicious PowerShell scripts are commonly used by threat actors to run silent actions in the background.
4
·

in progress

MSP Tool Logs
Ingest access logs from things like Screenconnect, Kaseya, Nable, Auvik, Datto RMM etc etc that MSP's use to admin their clients.
18
·

in progress

Ingest Windows DNS logs
If a server is configured as DNS server ingest the logs for the service. This is listed in CIS v8.1, Safeguard 8.6.
2
·

in progress

Additional Storage Options
Multi-year data storage and dynamic hot storage lifetimes (ex: 90 days hot for PCI compliance)
4
·

in progress

Powered by Canny