Vendor: IBM

April 15, 2026 · View on GitHub

Product: Guardium

RulesModelsMITRE ATT&CK® TTPsActivity TypesParsers
4021223
Use-CaseActivity Types/ParsersMITRE ATT&CK® TTPContent
Compromised Credentialsdatabase-alert
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql

database-query
ibm-guardium-kv-database-query-success-dbuser
ibm-guardium-leef-database-query-success-sql-1
T1213 - Data from Information Repositories
  • 36 Rules
  • 19 Models
Data Accessdatabase-alert
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql

database-query
ibm-guardium-kv-database-query-success-dbuser
ibm-guardium-leef-database-query-success-sql-1
T1213 - Data from Information Repositories
  • 36 Rules
  • 19 Models
Data Exfiltrationdatabase-alert
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql
TA0002 - TA0002
  • 2 Rules
  • 1 Models
Malwaredatabase-alert
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql
ibm-guardium-kv-alert-trigger-success-guardiumalert
ibm-guardium-str-alert-trigger-success-mssql
TA0002 - TA0002
  • 2 Rules
  • 1 Models

MITRE ATT&CK® Framework for Enterprise

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Data from Information Repositories