glowbase / decider

A web application assisting network defenders, analysts, and researchers in the process of mapping adversarial behaviors to MITRE ATT&CK, ACSC ISM and NIST 800-53 frameworks.
Other
4 stars 1 forks source link

Evidence Import #14

Open allan-korol opened 3 months ago

allan-korol commented 3 months ago

What is defined as being "evidence" and how does this fit in with Techniques/Tools?

This relates to how this information will be imported, whether it's a separate file, or as part of the tools-v15.1.json import.

glowbase commented 3 months ago

The evidence column details the file paths and locations of critical evidence/artefacts, corresponding to the a MITRE Technique/Sub-Technique.