Skip to content

Commit

Permalink
Update TECHNIQUE_TEMPLATE.md
Browse files Browse the repository at this point in the history
  • Loading branch information
bfuzzy committed May 21, 2018
1 parent eb53041 commit 3ede3fb
Showing 1 changed file with 8 additions and 8 deletions.
16 changes: 8 additions & 8 deletions templates/TECHNIQUE_TEMPLATE.md
Expand Up @@ -20,14 +20,14 @@ T0001_technique_name

## Recommended Data Sources

| ATT&CK Data Source | Event Log | Event ID| Description |
|---------|---------|---------|--------------|
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell | ID | FileCreate, Process access, etc.. |
|File Monitoring, Process Monitoring, etc..|Sysmon, WinEvent, PowerShell | ID | FileCreate, Process access, etc.. |
|File Monitoring, Process Monitoring, etc..|Sysmon, WinEvent, PowerShell | ID | FileCreate, Process access, etc.. |
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell | ID | FileCreate, Process access, etc.. |
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell | ID | FileCreate, Process access, etc.. |
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell | ID | FileCreate, Process access, etc.. |
| ATT&CK Data Source | Event Log |
|---------|---------|
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell |
|File Monitoring, Process Monitoring, etc..|Sysmon, WinEvent, PowerShell |
|File Monitoring, Process Monitoring, etc..|Sysmon, WinEvent, PowerShell |
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell |
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell |
|File Monitoring, Process Monitoring, etc..| Sysmon, WinEvent, PowerShell |



Expand Down

0 comments on commit 3ede3fb

Please sign in to comment.