mirror of
https://github.com/DISARMFoundation/DISARMframeworks.git
synced 2024-12-18 04:14:22 -05:00
40 lines
1.6 KiB
JSON
40 lines
1.6 KiB
JSON
|
{
|
||
|
"type": "bundle",
|
||
|
"id": "bundle--daf20bfb-b464-4006-b78d-ad3a3ca652ee",
|
||
|
"objects": [
|
||
|
{
|
||
|
"type": "attack-pattern",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "attack-pattern--3965c84f-5d14-40ac-89e8-04a39718b604",
|
||
|
"created_by_ref": "identity--f1a0f560-2d9e-4c5d-bf47-7e96e805de82",
|
||
|
"created": "2024-11-22T16:43:58.238692Z",
|
||
|
"modified": "2024-11-22T16:43:58.238692Z",
|
||
|
"name": "Pre-Existing Asset",
|
||
|
"description": "Pre-Existing Assets are assets which existed before the observed incident which have not been Repurposed; i.e. they are still being used for their original purpose. <br><br>An example could be an Account which presented itself with a Journalist Persona prior to and during the observed potential incident.",
|
||
|
"kill_chain_phases": [
|
||
|
{
|
||
|
"kill_chain_name": "mitre-attack",
|
||
|
"phase_name": "establish-assets"
|
||
|
}
|
||
|
],
|
||
|
"external_references": [
|
||
|
{
|
||
|
"source_name": "mitre-attack",
|
||
|
"url": "https://github.com/DISARMFoundation/DISARMframeworks/blob/main/generated_pages/techniques/T0150.003.md",
|
||
|
"external_id": "T0150.003"
|
||
|
}
|
||
|
],
|
||
|
"object_marking_refs": [
|
||
|
"marking-definition--f79f25d2-8b96-4580-b169-eb7b613a7c31"
|
||
|
],
|
||
|
"x_mitre_is_subtechnique": true,
|
||
|
"x_mitre_platforms": [
|
||
|
"Windows",
|
||
|
"Linux",
|
||
|
"Mac"
|
||
|
],
|
||
|
"x_mitre_version": "2.1"
|
||
|
}
|
||
|
]
|
||
|
}
|