Detectors
Every Cortex detection rule the toolbox knows about — analytics alerts, BIOCs and correlation rules — in one filterable set.
38 detectors match the current filters. tactic: TA0006 ✕
Download CSV8 tactics · 19 techniques · cell shade = number of matching detectors; click a cell to list them.
Initial Access
2 detectors
Execution
2 detectors
Defense Evasion
1 detector
Credential Access
38 detectors
- Unsecured Credentials (11)
- OS Credential Dumping (10)
- Steal or Forge Kerberos Tickets (5)
- Brute Force (4)
- Steal or Forge Authentication Certificates (3)
- Adversary-in-the-Middle (2)
- Credentials from Password Stores (2)
- Input Capture (2)
- Valid Accounts (2)
- Account Discovery (1)
- Command and Scripting Interpreter (1)
- Defacement (1)
- Exploitation of Remote Services (1)
- Forge Web Credentials (1)
- Network Sniffing (1)
- Rogue Domain Controller (1)
- System Service Discovery (1)
- Use Alternate Authentication Material (1)
- Windows Management Instrumentation (1)
Discovery
3 detectors
Lateral Movement
2 detectors
Collection
1 detector
Impact
1 detector