Skip to content

Latest commit

 

History

History
19 lines (17 loc) · 3.27 KB

ds_specops_specops_password.md

File metadata and controls

19 lines (17 loc) · 3.27 KB

Vendor: Specops

Product: Specops Password

Rules Models MITRE ATT&CK® TTPs Activity Types Parsers
3 1 2 2 2
Use-Case Activity Types (Legacy Event Type)/Parsers MITRE ATT&CK® TTP Content
Abnormal Authentication & Access user-password-reset:success (account-password-reset)
specops-spr-xml-user-password-reset-success-passwordresetsucceeded

user-unlock:success (account-unlocked)
specops-spr-xml-user-unlock-success-unlock
T1078 - Valid Accounts
  • 2 Rules
  • 1 Models
Account Manipulation user-password-reset:success (account-password-reset)
specops-spr-xml-user-password-reset-success-passwordresetsucceeded
T1098 - Account Manipulation
  • 1 Rules
Privilege Abuse user-password-reset:success (account-password-reset)
specops-spr-xml-user-password-reset-success-passwordresetsucceeded
T1098 - Account Manipulation
  • 1 Rules

MITRE ATT&CK® Framework for Enterprise

Initial Access Execution Persistence Privilege Escalation Defense Evasion Credential Access Discovery Lateral Movement Collection Command and Control Exfiltration Impact
Valid Accounts

Valid Accounts

Account Manipulation

Valid Accounts

Valid Accounts