Skip to content

olafhartong/OSSEM-DM

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

OSSEM Detection Model (DM)

Open Source Love Open_Threat_Research Community Twitter

This part of the project focuses on defining the required data in form of data objects and the relationships among each other needed to facilitate the creation of data analytics and validate the detection of adversary techniques. We have also extended this concept to the MITRE-ATT&CK framework here.

Available documents

File Description
OSSEM Event Mappings (YAML file) Security event logs mapped to OSSEM relationships (Includes ATT&CK data sources metadata)
ATT&CK Event Mappings (MD file) Security event logs mapped to ATT&CK Data Sources Objects
ATT&CK Event Mappings (YAML file) Security event logs mapped to ATT&CK Data Sources Objects
ATT&CK Event Mappings (CVS file) Security event logs mapped to ATT&CK Data Sources Objects

References

About

OSSEM Detection Model

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Python 73.9%
  • PowerShell 26.1%