Vendor: F5

June 14, 2023 · View on GitHub

Product: WebSafe

Use-Case: Privilege Abuse

RulesModelsMITRE ATT&CK® TTPsEvent TypesParsers
10222
Event TypeRulesModels
web-activity-allowedT1071.001 - Application Layer Protocol: Web Protocols
WEB-ALERT-EXEC: Security violation by Executive in web activity

T1078 - Valid Accounts
WEB-ALERT-EXEC: Security violation by Executive in web activity
web-activity-deniedT1071.001 - Application Layer Protocol: Web Protocols
WEB-ALERT-EXEC: Security violation by Executive in web activity

T1078 - Valid Accounts
WEB-ALERT-EXEC: Security violation by Executive in web activity