Vendor: Imperva
July 25, 2023 · View on GitHub
Product: CounterBreach
| Rules | Models | MITRE TTPs | Event Types | Parsers |
|---|---|---|---|---|
| 19 | 11 | 3 | 1 | 1 |
| Use-Case | Event Types/Parsers | MITRE TTP | Content |
|---|---|---|---|
| Compromised Credentials | database-alert ↳ cef-counterbreach-db-alert | T1078 - Valid Accounts T1213 - Data from Information Repositories |
|
| Data Access | database-alert ↳ cef-counterbreach-db-alert | T1213 - Data from Information Repositories |
|
| Malware | database-alert ↳ cef-counterbreach-db-alert | T1078 - Valid Accounts T1204 - User Execution |
|
ATT&CK Matrix for Enterprise
| Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
|---|---|---|---|---|---|---|---|---|---|---|---|
| Valid Accounts | User Execution | Valid Accounts | Valid Accounts | Valid Accounts | Data from Information Repositories |