Skip to content

[New Rule] Attempt to Modify or Delete Okta Application #9

@threat-punter

Description

@threat-punter

Description

An adversary may attempt to modify, deactivate, or delete an Okta application in order to weaken an organization's security controls or disrupt its business operations.

Required Info

  • Eventing Sources:

filebeat-*

  • Target Operating Systems:
  • Platforms

Okta

  • Target ECS Version: 1.5.0
  • New fields required in ECS for this? No Associated issue/PR: N/A

Optional Info

Example Data

image

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions