Kaspersky Anti Targeted Attack (KATA) Platform

General information about an alert of any type

8 November 2023

ID 216715

Regardless of the technology that was used to create the alert, the header of the window containing the alert information displays the alert ID. The Apt_icon_VIPgroup or Apt_icon_VIPgroupKATA3 icon will be displayed next to the status depending on whether the alert has VIP status.

The upper part of the window containing alert information may display the following general information about the alert:

  • State—Alert status depending on whether or not this alert has been processed by the user of Kaspersky Anti Targeted Attack Platform.
  • Importance—Alert importance for the Kaspersky Anti Targeted Attack Platform user depending on the impact this alert may have on computer or corporate LAN security based on Kaspersky experience.
  • Server is the name of the server where the alert was generated. Servers belong to the organization you are managing in the application web interface.
  • Host—Domain name of the computer where the alert occurred.
  • Data source—Source of the data. For example, SMTP Sensor or SPAN Sensor.
  • Time created—Time when the alert was generated.
  • Time updated—Time when information about the alert was updated.

See also

Viewing alert details

Information in the Object information section

Information in the Alert information section

Information in the Scan results section

Information in the IDS rule section

Information in the Network event section

Scan results in Sandbox

IOC scan results

Information in the Hosts section

Information in the Change log section

Sending alert data

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.