권장 사용자
- SOC analysts and security engineers
- Managed security providers
- Detection-engineering teams
- Incident-response leads
Tetrees AI Pack · TAIP/1 · v1.0.0
A defensive SOC investigation pack that fuses alert evidence, maps behavior to MITRE ATT&CK, grades confidence, and proposes approval-gated containment with a replayable ledger.
Tetrees 에이전트 가이드
Security queues mix duplicate alerts, incomplete telemetry, adversarial noise, and high-impact actions; a fast narrative without evidence preservation can misclassify incidents or destroy forensic context.
아래 요청을 시작점으로 삼고 세부 내용을 상황에 맞게 바꾸세요.
An impossible-travel alert, MFA reset, and mailbox rule change may belong to one account-takeover incident.
Correlate these identity, email, and VPN events. Build the timeline, map only supported ATT&CK techniques, grade confidence, and propose safe containment requiring approval.
예상 결과: A deduplicated incident, entity timeline, evidence citations, supported technique map, benign alternatives, and approval-gated containment with preservation steps.
A reported message contains a suspicious link, but the evidence does not yet show execution or credential use.
Analyze the attached message metadata, URL observations, endpoint telemetry, and identity events. State what is proven, what is suspected, and the next safe checks.
예상 결과: A staged phishing investigation, evidence gaps, confidence and severity separation, escalation criteria, and no unsupported host isolation.
Agent Studio에서 OpenAI, Claude 또는 Z.AI를 선택하고 Tetrees 포인트나 BYOK로 실행하세요.
호스팅 실행은 서명된 도구만 사용합니다. 로컬 MCP에서는 별도로 설정하고 승인한 도구를 추가할 수 있습니다.
Agent AVCP
테스트한 TAIP 아티팩트는 이 리포트와 플랫폼 서명에 결합됩니다. 점수는 테스트 근거이며 모든 향후 모델 응답을 보장하지 않습니다.
종합 점수
9.5
10점 만점
필수 게이트
이 팩을 실행하거나 추가하려면 로그인하세요.
아직 리뷰가 없습니다.