turbot/tailpipe-mod-aws-cloudtrail-log-detections

Dashboard: MITRE ATT&CK v16.1

To obtain the latest version of this official guide, please visit https://attack.mitre.org/.

Overview

MITRE ATT&CK is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service community.

Usage

Install the mod:

mkdir dashboards
cd dashboards
powerpipe mod init
powerpipe mod install github.com/turbot/tailpipe-mod-aws-cloudtrail-log-detections

Start the Powerpipe server:

powerpipe server

Open http://localhost:9033 in your browser and select MITRE ATT&CK v16.1 dashboard.

You could also snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe benchmark run aws_cloudtrail_log_detections.benchmark.mitre_attack_v161 --share

Benchmark

This dashboard is automatically generated from the following benchmark:

benchmark.mitre_attack_v161

Tags