Vendor: Cisco

June 14, 2023 · View on GitHub

Product: Unified Computing System

RulesModelsMITRE ATT&CK® TTPsEvent TypesParsers
53311
Use-CaseEvent Types/ParsersMITRE ATT&CK® TTPContent
Abnormal Authentication & Accessauthentication-failed
cisco-ucs-authentication-failed
T1133 - External Remote Services
  • 3 Rules
  • 3 Models
Lateral Movementauthentication-failed
cisco-ucs-authentication-failed
T1078 - Valid Accounts
T1090.003 - Proxy: Multi-hop Proxy
  • 1 Rules
Ransomwareauthentication-failed
cisco-ucs-authentication-failed
T1078 - Valid Accounts
  • 1 Rules

MITRE ATT&CK® Framework for Enterprise

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
External Remote Services

Valid Accounts

External Remote Services

Valid Accounts

Valid Accounts

Valid Accounts

Proxy: Multi-hop Proxy

Proxy