center-for-threat-informed-defense / security-stack-mappings

🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as an archive.
https://center-for-threat-informed-defense.github.io/mappings-explorer/
Apache License 2.0
380 stars 63 forks source link

Mapping review updates. #110

Closed nickamon closed 3 years ago

nickamon commented 3 years ago

@LeeKann, please review my updates to ATPForAzureSQLDatabase.yaml. I think all the scores should be minimal since the detection is specific to a AzureDBs.

@clemskor, please review my updates to AzureDedicatedHSM.yaml. I removed Valid accounts from the mapped techniques; I don't see how HSM would help against the usage of valid accounts. How an adversary may obtain the account is not within the scope of the technique and therefore HSM wouldn't be helpful.