Entrada de Pandipedia
ATT&CK mapping decisions for detection engineering
How do the attached sources describe ATT&CK at a high level?
Dificultat: FàcilAccording to the attached sources, what does an ATT&CK technique represent?
Dificultat: MitjanaFor detection engineering, what mapping approach do the sources support when an observed behavior could fit more than one ATT&CK entry?
Dificultat: DifícilWhich statement best reflects the limitation noted in the attached sources about recurring behaviors such as privilege escalation, persistence, active scanning, account manipulation, and exfiltration-related activity?
Dificultat: MitjanaDesa aquesta resposta
Crea el teu compte per conservar aquesta resposta i continuar-hi més tard.
Ho sentim, Pandi no ha pogut trobar una resposta.
Veiem alternatives:
- Modifica la consulta.
- Inicia un nou fil.
- Elimina les fonts (si s'han afegit manualment).