The MITRE ATT&CK Module (version 2.6.0) is a collection of AI Engine rules designed to detect unusual or malicious user activity that is occurring within your organization’s network.

The MITRE ATT&CK module contains licensed content and is available only to customers with a valid subscription.

Matrices

AI Engine Rules

Guides

MITRE ATT&CK Deployment Guide MITRE ATT&CK User Guide

Module Revisions

The following table summarizes the changes that have been made since the last release (v2.6.0) of the MITRE ATT&CK Module.

AIE Rule ID

AIE Rule Name

Updated

1540

T1552.004:Private Keys 

1541T1489:Service Stop 
1542T1059.003:Windows Command Shell