Terrance DeJesus
61d671a1a6
[Rule Tuning] Missing MITRE ATT&CK Mappings ( #2073 )
...
* initial commit with eggshell mitre mapping added
* adding updated rules
* [Rule Tuning] MITRE for GCP rules
I've added Mitre references for the 4 GCP rules missing. Changed 3 of the rules from "Impact" to "Defense Evasion" based on the technique used and it's matched tactic.
* [Rule Tuning] Endgame Rule name updates for Mitre
Updated Endgame rule names for those with Mitre tactics to match the tactics.
* Update rules/integrations/aws/persistence_redshift_instance_creation.toml
Co-authored-by: Jonhnathan <jonhnathancesar@gmail.com >
* Update rules/integrations/aws/exfiltration_rds_snapshot_restored.toml
Co-authored-by: Jonhnathan <jonhnathancesar@gmail.com >
* adding 10 updated rules for google_workspace, ml and o365
* adding 22 rule updates for mitre att&ck mappings
* adding 24 rule updates related mainly to ML rules
* adding 3 rules related to detection via ML
* adding adjustments
* adding adjustments with solutions to recent pytest errors
* removed tabs from tags
* adjusted mappings and added techniques
* adjusted endgame rule mappings per review
* adjusted names to match different tactics
* added execution and defense evasion tag
* adjustments to address errors from merging with main
* added newlines to rules missing them at the end of the file
Co-authored-by: imays11 <59296946+imays11@users.noreply.github.com >
Co-authored-by: Jonhnathan <jonhnathancesar@gmail.com >
2022-07-22 15:42:38 -04:00
..
2022-07-20 15:30:04 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-20 15:30:04 +00:00
2022-05-18 16:01:50 +00:00
2022-05-18 16:01:50 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-20 15:30:04 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-05-18 16:01:50 +00:00
2022-05-18 16:01:50 +00:00
2022-05-18 16:01:50 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-13 14:29:48 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-20 14:31:31 +00:00
2022-07-18 20:15:19 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-05-18 16:01:50 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-05-06 19:09:27 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 20:15:19 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-05-31 15:59:13 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-20 15:30:04 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-07-22 15:42:38 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-22 18:31:42 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-07-22 18:31:42 +00:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-22 18:31:42 +00:00
2022-07-22 18:31:42 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 20:15:19 -04:00
2022-07-22 18:31:42 +00:00
2022-04-01 23:28:54 +00:00
2022-07-18 21:25:32 +00:00
2022-04-01 23:28:54 +00:00
2022-07-22 18:31:42 +00:00
2022-07-22 18:31:42 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-07-22 18:31:42 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-07-20 15:30:04 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-05-19 16:25:46 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-20 15:30:04 +00:00
2022-07-20 15:30:04 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 20:15:19 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-07-22 18:31:42 +00:00
2022-05-31 15:59:13 +00:00
2022-05-31 15:59:13 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-13 14:29:48 +00:00
2022-07-22 18:31:42 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-05-18 16:01:50 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-22 14:22:56 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-22 18:31:42 +00:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-07-20 15:30:04 +00:00
2022-04-13 01:07:09 +00:00
2022-07-18 21:25:32 +00:00
2022-05-31 15:59:13 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-04-13 01:07:09 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-04-14 12:27:47 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-05-31 15:59:13 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-05-18 16:01:50 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-04-05 19:35:15 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-22 18:31:42 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-04-14 12:27:47 +00:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-05-18 16:01:50 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-04-14 12:27:47 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-04-29 12:38:41 +00:00
2022-04-26 23:41:59 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-05-11 17:42:44 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-07-18 21:25:32 +00:00
2022-03-29 21:03:35 -04:00