diff --git a/atomics/T1562.009/T1562.009.yaml b/atomics/T1562.009/T1562.009.yaml index 34cf4ad8..f8111d44 100644 --- a/atomics/T1562.009/T1562.009.yaml +++ b/atomics/T1562.009/T1562.009.yaml @@ -2,6 +2,7 @@ attack_technique: T1562.009 display_name: 'Impair Defenses: Safe Boot Mode' atomic_tests: - name: Safe Mode Boot + auto_generated_guid: 2a78362e-b79a-4482-8e24-be397bce4d85 description: Allows adversaries to abuse safe mode to disable endpoint defenses that may not start with limited boot supported_platforms: - windows diff --git a/atomics/used_guids.txt b/atomics/used_guids.txt index f70a145a..6823336f 100644 --- a/atomics/used_guids.txt +++ b/atomics/used_guids.txt @@ -1364,3 +1364,4 @@ d58d749c-4450-4975-a9e9-8b1d562755c2 562aa072-524e-459a-ba2b-91f1afccf5ab 8c992cb3-a46e-4fd5-b005-b1bab185af31 e43cfdaf-3fb8-4a45-8de0-7eee8741d072 +2a78362e-b79a-4482-8e24-be397bce4d85