Index
As this ebook edition doesn't have fixed pagination, the page numbers below are hyperlinked for reference only, based on the printed edition of this book.
A
abstraction map 268, 269
access, authentication, and authorization logs 80
actionability, of detection 18
Active Exploits score 107, 108
ad hoc tests 38
adversary activity simulation 203
Atomic Red Team 203, 204
CALDERA 204, 205
adversary tools detection 141
PsExec usage, example scenarios 141
alert determinations 260
antivirus (AV) 81
Apache logs 90
Atomic Red Team 203
additional exercises 212
CALDERA agent, deploying 213, 214
detections for multiple technique, validating 212
detections for single technique, validating 205
detections, reviewing in Elastic Stack 217-219
operation, starting 214-217
reference link 204
setup, for validating detection 205-208
validation, executing via 209-212
ATT&CK Navigator
reference link...