Threat Detection

Trend Micro correlates known threat detections with device owners to give you better insight into possible security risks.

The following table outlines the indicators associated with known threat detections and the related data sources.

Indicator

Description

Data Source

Target

Web threats

The Web Reputation score of the URLs the user visited or the detection of malicious activity within network traffic

  • Connected Endpoint Product Agent

  • Mobile Sensor

  • Web Sensor

  • Cloud app

  • Device

  • User

Email threats

Detection of malicious or anomalous email activity

  • Trend Micro Vision One Email Sensor

  • User

Network threats

Detection of malicious activity in monitored endpoint traffic

  • Trend Micro Vision One Network Sensor

  • User

Endpoint threats

Detection of events on endpoints that may be malicious

  • Connected Endpoint Product Agent

  • Device

  • User

Mobile device threats

Detection of events on mobile devices that may be malicious

  • Mobile Sensor

  • Device

  • User

Connected app activity

Detection of events on Office 365 apps (Teams, SharePoint, OneDrive) that may be malicious

  • Office 365
  • User