Detectsubtechnique

D3-AEMApplication Exception Monitoring

Definition

Monitoring the failures of system counters and timers.

Defends against14

TypeTargetConfidenceTier
SubTechniqueCredential Stuffingt1110.004100%live
SubTechniqueSudo and Sudo Cachingt1548.003100%live
SubTechniqueTrapt1546.005100%live
SubTechniquePassword Guessingt1110.001100%live
SubTechniqueCreate Process with Tokent1134.002100%live
SubTechniquePassword Sprayingt1110.003100%live
SubTechniqueCached Domain Credentialst1003.005100%live
SubTechniqueMake and Impersonate Tokent1134.003100%live
SubTechniqueClear Command Historyt1070.003100%live
TechniqueForced Authenticationt1187100%live
SubTechniqueWindows Management Instrumentation Event Subscriptiont1546.003100%live
SubTechniqueDCSynct1003.006100%live
TechniqueDeobfuscate/Decode Files or Informationt1140100%live
SubTechniqueClear Windows Event Logst1070.001100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Defence
Application Performance Monitoring
Defence
Platform Uptime Monitoring
Defence
System Daemon Monitoring
Defence
Domain Account Monitoring
Defence
Control Flow Integrity
Defence
Platform Monitoring
Sourced from MITRE D3FEND ontology. Curated by Adam Lundqvist, SQUR.