Skip to content

Latest commit

 

History

History
19 lines (17 loc) · 3.57 KB

ds_datawatch_systems_datawatch.md

File metadata and controls

19 lines (17 loc) · 3.57 KB

Vendor: DataWatch Systems

Product: DataWatch

Rules Models MITRE ATT&CK® TTPs Activity Types Parsers
12 6 1 1 0
Use-Case Activity Types (Legacy Event Type)/Parsers MITRE ATT&CK® TTP Content
Abnormal Authentication & Access physical_location-access:fail (failed-physical-access)
datawatchsystems-datawatch-str-physical_location-access-badgeaccess

physical_location-access:success (physical-access)
datawatchsystems-datawatch-str-physical_location-access-badgeaccess
T1078 - Valid Accounts
  • 3 Rules
  • 2 Models
Physical Security physical_location-access:fail (failed-physical-access)
datawatchsystems-datawatch-str-physical_location-access-badgeaccess

physical_location-access:success (physical-access)
datawatchsystems-datawatch-str-physical_location-access-badgeaccess
T1078 - Valid Accounts
  • 9 Rules
  • 4 Models
Privileged Activity physical_location-access:fail (failed-physical-access)
datawatchsystems-datawatch-str-physical_location-access-badgeaccess

physical_location-access:success (physical-access)
datawatchsystems-datawatch-str-physical_location-access-badgeaccess
T1078 - Valid Accounts
  • 1 Rules

MITRE ATT&CK® Framework for Enterprise

Initial Access Execution Persistence Privilege Escalation Defense Evasion Credential Access Discovery Lateral Movement Collection Command and Control Exfiltration Impact
Valid Accounts

Valid Accounts

Valid Accounts

Valid Accounts