Vendor: VMware

June 14, 2023 · View on GitHub

Product: NSX FW

RulesModelsMITRE ATT&CK® TTPsEvent TypesParsers
5620522
Use-CaseEvent Types/ParsersMITRE ATT&CK® TTPContent
Lateral Movementnetwork-connection-failed
cef-nsx-fw-logs-1

network-connection-successful
cef-nsx-fw-logs-1
T1071 - Application Layer Protocol
T1090.003 - Proxy: Multi-hop Proxy
T1190 - Exploit Public Fasing Application
TA0010 - TA0010
TA0011 - TA0011
  • 56 Rules
  • 20 Models
Malwarenetwork-connection-failed
cef-nsx-fw-logs-1

network-connection-successful
cef-nsx-fw-logs-1
TA0011 - TA0011
  • 4 Rules

MITRE ATT&CK® Framework for Enterprise

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Exploit Public Fasing Application

Proxy: Multi-hop Proxy

Application Layer Protocol

Proxy