Rules by Product and UseCase

May 13, 2026 · View on GitHub

Vendor:

Product:

Use-Case: Destruction of Data

RulesModelsMITRE ATT&CK® TTPsActivity TypesParsers
10312
Event TypeRulesModels
file-deleteT1070 - Indicator Removal on Host
FA-UH-CRIT: File deletion on a critical system

T1070.004 - Indicator Removal on Host: File Deletion
FA-UH-CRIT: File deletion on a critical system

T1485 - Data Destruction
FA-UH-CRIT: File deletion on a critical system