vz-risk / veris

Vocabulary for Event Recording and Incident Sharing (VERIS)
http://verisframework.org
Other
565 stars 161 forks source link

add "default creds" to "lost or stolen creds" definition #423

Open gdbassett opened 2 years ago

gdbassett commented 2 years ago

Update the definition of "action.hacking.variety.Use of stolen creds" to include "includes use of default creds".

We have always treated it this way. The only distinction for use of creds is when they are brute forced on the victim system, however the definition doesn't explicitly state it.