-
Notifications
You must be signed in to change notification settings - Fork 24
Open
Labels
enhancementNew feature or requestNew feature or requesthelp wantedExtra attention is neededExtra attention is needed
Description
Hi! First of all, kudos for the initiative, and reminding us that ATT&CK is not EDR only.
Many (if not all) of the techniques you have mapped don't have the 'Network intrusion detection system' data source. Depending on how you are using ATT&CK, this might be an issue if you are planing to perform gap/coverage analysis. Are you planning to request the ATT&CK team to add the NIDS data source as you map the techniques?
Thanks!
RD
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
enhancementNew feature or requestNew feature or requesthelp wantedExtra attention is neededExtra attention is needed