Commit Graph

30 Commits

Author SHA1 Message Date
Stephen Campbell
84f0700c2e Corrected columns for urls sheet, added back asset into technique names, and tidied up mapping of existing incidents to amended techniques 2024-11-21 11:50:30 -05:00
Stephen Campbell
964938bd15 New version V1.6 of Red Framework to expand roster of non-content assets and improve interoperability with Meta Online Operations Kill Chain 2024-11-19 16:02:48 -05:00
Stephen Campbell
9c2735869d Some formatting changes to incidents and removing some techniques 2024-08-01 09:35:17 -04:00
Stephen Campbell
d83d55c722 Fixed some formatting issues with version 1.5 2024-07-27 05:24:28 -04:00
Stephen Campbell
2c4757b429 New Version 1.5 of Red Framerwork: map Disguising Assets from Meta Kill Chain 2024-07-23 04:58:02 -04:00
Stephen Campbell
1b9ccce6c7 Added URLs to incident pages 2024-05-18 18:19:30 -04:00
Stephen Campbell
f1ac3b04ee New Version 1.4 of Red Framework: Some of the Requests from EEAS and VIGINUM 2024-03-13 15:07:55 -04:00
Stephen Campbell
7eedbe027a Corrected summary for T0139.001 (Discourage) 2023-09-28 17:38:48 -04:00
Stephen Campbell
1e84e5f9de Run generate_DISARM_pages for T0135.001 and T0140.001 2023-09-26 12:28:55 -04:00
Stephen Campbell
a604c155cf Update descriptions for T0104.003, T0123.004, T0135.001, T0140.001 and files for STIX Bundle 2023-09-25 12:46:26 -04:00
Stephen Campbell
62680c33d5 New Version 1.3 of Red Framework: EEAS Requests Plus Major Enhancements to TA01 and TA02 2023-09-13 18:16:14 -04:00
Stephen Campbell
7a65c376bb Convert Excel master to British English and metatechnique names to title case 2023-08-10 14:51:53 -04:00
Stephen Campbell
c39577572d Amended technique names to MLA Title Case in following sheets: techniques, detections and countermeasures 2023-05-25 15:57:53 -04:00
Stephen Campbell
c4275fe3f8 testing a quick spelling change on master excel file 2023-03-25 12:09:08 -04:00
adam-disarm
3688542eb5 Update Summary for T0101.002 2023-03-13 15:30:15 +00:00
VVX7
cae9cbc55e update stix for opencti compatability 2022-07-03 19:59:09 -04:00
Mike Klein
c888a7d6f4 subtechnique description updates
Updated subtechniques so that now all have a description. Also made slight name changes to a few techniques and subtechniques but retained the disarm_id and overall nature of all of them
2022-07-02 15:40:09 -04:00
VVX7
81a5359b55 add subtechniques markdown 2022-07-02 14:09:24 -04:00
VVX7
c7b5d59876 add subtechniques to stix2 generator. update STIX bundles. use subtechnique dot notation name convention in DISARM_FRAMEWORKS_MASTER.xlsx 2022-07-02 13:29:40 -04:00
Mike Klein
1450b8e5ff Updated technique descriptions and subtechnique mapping 2022-07-01 13:32:09 -04:00
Sara-Jayne Terp
14dc0cf8bb apply generated_pages_fudge to all the object markdown pages 2022-07-01 17:24:47 +01:00
Sara-Jayne Terp
5575210da1 last ungodly hack for generate_pages repeat 2022-07-01 17:18:26 +01:00
Sara-Jayne Terp
9c0a1f8845 attempt2 at generated_pages repeat fix. Ungodly hack 2022-07-01 17:16:39 +01:00
Sara-Jayne Terp
5b73d3afab try fix for repeated generated_pages string 2022-07-01 17:12:05 +01:00
Mike Klein
2c6e6bee1b Revisions to DISARM Framework 2022-06-30 23:30:18 -04:00
Sara-Jayne Terp
9ea0ffa1d7 dataset updates 2022-06-30 23:22:19 +01:00
Sara-Jayne Terp
8162faab82 generated github pages 2022-06-30 19:50:22 +01:00
Sara-Jayne Terp
c11e9d06ad Added EEAS framework objects and STIX generator
Added framework objects:
- Added technique T0066 "Degrade adversary" to TA02
- Added technique T0067 "Plan to discredit credible sources" to TA02
- Added technique T0068 "respond to breaking news event" to TA02
- Added technique T0069  "respond to active crisis" to TA02
- Added technique T0070 "Analyze existing communities" to TA02
- Added technique T0071 "Find echo chambers" to TA13
- Added technique T0072  "Segment audiences" to TA13

Added STIX generator from repo DISARM-stix2, and added code to generate github files, databases, and STIX from the same Jupyter notebook.
2022-02-20 15:40:34 -05:00
Sara-Jayne Terp
aca100b364 framework and page updates
Framework updates:
- TA08 added text "Used for preparation before broader release, and as message honing."
- TA10 change name from "Go Physical" to "Drive Offline Activity"
- T0004 change name from "Competing Narratives" to "Devise Competing Narratives"
- T0005 convert into a tactic stage, TA13.  Change name from "Center of Gravity Analysis" to "Conduct Center of Gravity Analysis"
- T0006 rename from "Create Master Narratives" to "Develop Narrative Concepts".  nb narratology: can't create master narratives - can only latch onto them
- T0011 change name from "Hijack legitimate account" to "Compromise legitimate account"
- T0065. Create new technique "use physical broadcast capabilities" under TA04
- T0014. Rename from "Create funding campaigns" to "Prepare fundraising campaigns".  Exited text to reflect that this new name allows the possibility of either creating a new one, or revitalizing an existing one.
- T0015 rename from "Create hashtag" to "Create hashtags".  Change text to mention hashtag groups.
- T0017 rename from "Promote online funding" to "Conduct Fundraising Campaigns"
- T0018 rename from "Paid targeted ads" to "Purchase advertisements"
- T0026 rename from "Create fake research" to "create pseudoscientific or disingenuous research"

Page and file updates:
- Added MITRE, FIU, and SPICE to DISARM's history
- reran github page generator
- reran sqlite generator
2022-02-02 10:57:17 -05:00
Sara-Jayne Terp
22abaf93d8 Copy AMITT repository, clean up and rebrand
Took a copy of the current AMITT github repository - we'll be updating this and merging the SPICE branch back in
Rebranded to DISARM
Moved generated pages to their own folder, to make looking at the repository less confusing
2022-01-29 11:34:46 -05:00