mirror of
https://github.com/DISARMFoundation/DISARMframeworks.git
synced 2025-01-06 21:18:17 -05:00
40 lines
1.7 KiB
JSON
40 lines
1.7 KiB
JSON
{
|
|
"type": "bundle",
|
|
"id": "bundle--98304048-74cf-43f9-8f1d-6a9fb3b167c7",
|
|
"objects": [
|
|
{
|
|
"type": "attack-pattern",
|
|
"spec_version": "2.1",
|
|
"id": "attack-pattern--86a9f2a7-2d8c-4d82-9b68-60c133cbe662",
|
|
"created_by_ref": "identity--84b3ecc5-a7e9-4457-9e95-17e9cdbc68ec",
|
|
"created": "2022-07-02T19:59:12.635185Z",
|
|
"modified": "2022-07-02T19:59:12.635185Z",
|
|
"name": "Conduct Swarming",
|
|
"description": "Swarming refers to the coordinated use of accounts to overwhelm the information space with operation content. Unlike information flooding, swarming centers exclusively around a specific event or actor rather than a general narrative. Swarming relies on \u201chorizontal communication\u201d between information assets rather than a top-down, vertical command-and-control approach. ",
|
|
"kill_chain_phases": [
|
|
{
|
|
"kill_chain_name": "mitre-attack",
|
|
"phase_name": "maximize-exposure"
|
|
}
|
|
],
|
|
"external_references": [
|
|
{
|
|
"source_name": "DISARM",
|
|
"url": "https://github.com/DISARMFoundation/DISARM_framework/blob/master/techniques/T0049.005.md",
|
|
"external_id": "T0049.005"
|
|
}
|
|
],
|
|
"object_marking_refs": [
|
|
"marking-definition--aaf5e36e-03f1-463c-acfb-47afc5e12add"
|
|
],
|
|
"x_mitre_is_subtechnique": true,
|
|
"x_mitre_platforms": [
|
|
"Windows",
|
|
"Linux",
|
|
"Mac"
|
|
],
|
|
"x_mitre_version": "1.0"
|
|
}
|
|
]
|
|
}
|