Detectors
Every Cortex detection rule the toolbox knows about — analytics alerts, BIOCs and correlation rules — in one filterable set.
38 detectors match the current filters. tactic: TA0007 ✕
Download CSV7 tactics · 20 techniques · cell shade = number of matching detectors; click a cell to list them.
Execution
1 detector
Persistence
3 detectors
Privilege Escalation
1 detector
Defense Evasion
1 detector
Credential Access
3 detectors
Discovery
38 detectors
- Remote System Discovery (8)
- System Network Configuration Discovery (8)
- Container and Resource Discovery (7)
- System Information Discovery (6)
- System Service Discovery (6)
- Network Service Discovery (5)
- Account Discovery (4)
- Create Account (3)
- Permission Groups Discovery (3)
- File and Directory Discovery (2)
- Deploy Container (1)
- Escape to Host (1)
- Network Share Discovery (1)
- Network Sniffing (1)
- OS Credential Dumping (1)
- Process Discovery (1)
- Remote Services (1)
- Steal or Forge Authentication Certificates (1)
- System Owner/User Discovery (1)
- Virtualization/Sandbox Evasion (1)
Lateral Movement
1 detector