Forum Discussion
viralshah007
Sep 09, 2020Copper Contributor
AWS CloudTrail events Query
1 ) On Threat Intelligent Technic AWS Cloud trail and also looking for Relevant Techniques (TXXX) , find Query to looks in to cloud trail any IOC form TI. Provide the Mitre Techniques name and Que...
CliveWatson
Sep 10, 2020Former Employee
Have you taken a look in the Github, all the files have the Txxx number? https://github.com/Azure/Azure-Sentinel/tree/master/Detections/AWSCloudTrail
You can also you the repository to search for keywords like "IOC"
You can also you the repository to search for keywords like "IOC"