Vendor: AssetView

April 15, 2026 · View on GitHub

Product: AssetView

RulesModelsMITRE ATT&CK® TTPsActivity TypesParsers
62251640
Use-CaseActivity Types/ParsersMITRE ATT&CK® TTPContent
Abnormal Authentication & Accessprint-activity
assetview-av-csv-printer-activity-success-15041
T1078 - Valid Accounts
  • 1 Rules
Compromised Credentialsfile-write
assetview-av-str-file-write-success-10001
T1003 - OS Credential Dumping
T1003.002 - T1003.002
T1003.003 - T1003.003
T1083 - File and Directory Discovery
  • 31 Rules
  • 14 Models
Data Accessfile-write
assetview-av-str-file-write-success-10001
T1083 - File and Directory Discovery
  • 24 Rules
  • 13 Models
Data Exfiltrationfile-write
assetview-av-str-file-write-success-10001
TA0002 - TA0002
  • 2 Rules
  • 1 Models
Data Leakfile-write
assetview-av-str-file-write-success-10001

print-activity
assetview-av-csv-printer-activity-success-15041

usb-insert
assetview-av-csv-peripheral-storage-insert-success-15031
T1052 - Exfiltration Over Physical Medium
T1052.001 - Exfiltration Over Physical Medium: Exfiltration over USB
T1091 - Replication Through Removable Media
T1114 - Email Collection
T1114.001 - T1114.001
  • 18 Rules
  • 6 Models
Malwarefile-write
assetview-av-str-file-write-success-10001
T1003 - OS Credential Dumping
T1003.002 - T1003.002
T1505 - Server Software Component
T1505.003 - Server Software Component: Web Shell
T1547 - Boot or Logon Autostart Execution
T1547.001 - T1547.001
TA0002 - TA0002
  • 10 Rules
  • 4 Models
Privilege Abusefile-download
assetview-av-csv-file-download-success-15091

file-write
assetview-av-str-file-write-success-10001
T1078 - Valid Accounts
  • 1 Rules
Privileged Activityfile-download
assetview-av-csv-file-download-success-15091

file-write
assetview-av-str-file-write-success-10001
T1078 - Valid Accounts
  • 1 Rules
Ransomwarefile-write
assetview-av-str-file-write-success-10001
T1486 - Data Encrypted for Impact
  • 1 Rules

MITRE ATT&CK® Framework for Enterprise

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Valid Accounts

Replication Through Removable Media

Valid Accounts

Server Software Component: Web Shell

Server Software Component

Boot or Logon Autostart Execution

Valid Accounts

Boot or Logon Autostart Execution

Valid Accounts

OS Credential Dumping

File and Directory Discovery

Replication Through Removable Media

Email Collection

Exfiltration Over Physical Medium: Exfiltration over USB

Exfiltration Over Physical Medium

Data Encrypted for Impact