Skip to content

Latest commit

 

History

History
20 lines (18 loc) · 3.33 KB

ds_mcafee_mcafee_dam.md

File metadata and controls

20 lines (18 loc) · 3.33 KB

Vendor: McAfee

Product: McAfee DAM

Rules Models MITRE ATT&CK® TTPs Activity Types Parsers
40 21 2 2 1
Use-Case Activity Types(Legacy Event Type)/Parsers MITRE ATT&CK® TTP Content
Compromised Credentials alert-trigger:success(database-alert)
mcafee-mdam-cef-alert-trigger-success-alert
mcafee-mdam-cef-alert-trigger-success-alert-1

database-query:success(database-query)
mcafee-mdam-kv-database-dbactivity
T1213 - Data from Information Repositories
  • 36 Rules
  • 19 Models
Data Access alert-trigger:success(database-alert)
mcafee-mdam-cef-alert-trigger-success-alert
mcafee-mdam-cef-alert-trigger-success-alert-1

database-query:success(database-query)
mcafee-mdam-kv-database-dbactivity
T1213 - Data from Information Repositories
  • 36 Rules
  • 19 Models
Data Exfiltration alert-trigger:success(database-alert)
mcafee-mdam-cef-alert-trigger-success-alert
mcafee-mdam-cef-alert-trigger-success-alert-1
TA0002 - TA0002
  • 2 Rules
  • 1 Models
Malware alert-trigger:success(database-alert)
mcafee-mdam-cef-alert-trigger-success-alert
mcafee-mdam-cef-alert-trigger-success-alert-1
TA0002 - TA0002
  • 2 Rules
  • 1 Models

MITRE ATT&CK® Framework for Enterprise

Initial Access Execution Persistence Privilege Escalation Defense Evasion Credential Access Discovery Lateral Movement Collection Command and Control Exfiltration Impact
Data from Information Repositories