Use Case: Destruction of Data
August 31, 2023 · View on GitHub
Use Case: Destruction of Data
Vendor: Accellion
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Kiteworks |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Airlock
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Web Application Firewall |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Box
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Box Cloud Content Management |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Cimtrak
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Cimtrak |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Code42
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Code42 Incydr |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: CrowdStrike
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Falcon |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: CyberArk
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| CyberArk Vault |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Delinea
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Centrify Audit and Monitoring Service |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Dell
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| EMC Isilon |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Digital Guardian
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Digital Guardian Endpoint Protection |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Dropbox
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Dropbox |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Dtex Systems
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| DTEX InTERCEPT |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: ESector
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| ESector DEFESA |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Egnyte
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Egnyte |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: FTP
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| FTP |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: FileAuditor
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| FileAuditor |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: GoAnywhere
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| GoAnywhere MFT |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Google
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Workspace |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: HelpSystems
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Powertech Identity Access Manager (BoKs) |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Imperva
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Imperva File Activity Monitoring (FAM) |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Ipswitch
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| MoveIt DMZ |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: LanScope
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| LanScope Cat |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Microsoft
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Azure |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
| Cloud App Security (MCAS) |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
| Defender ATP |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
| Office 365 |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
| Sysmon |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
| Windows |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Nasuni
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Nasuni |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: NetApp
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| NetApp |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: NetDocs
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| NetDocs |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Netskope
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Security Cloud |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Netwrix
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Netwrix Auditor |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Nutanix
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Nutanix Files |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Palo Alto Networks
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Palo Alto Aperture |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Quest Software
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Change Auditor |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: SFTP
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| SFTP |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Sailpoint
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| FAM |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
| SecurityIQ |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: SentinelOne
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Singularity Platform |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: ServiceNow
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| ServiceNow |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: SkySea
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| ClientView |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Symantec
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Symantec CloudSOC |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
| Symantec EDR |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Tanium
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Integrity Monitor |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: TitanFTP
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| TitanFTP |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Unix
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Unix |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: VMS Software
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| OpenVMS |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: VMware
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Carbon Black EDR |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Varonis
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Data Security Platform |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Vectra
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Cognito Stream |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|
Vendor: Zeek
| Product | Event Types | MITRE ATT&CK® TTP | Content |
|---|---|---|---|
| Zeek Network Security Monitor |
| T1070.004 - Indicator Removal on Host: File Deletion T1485 - Data Destruction |
|