Skip to content
#

threat

Here are 91 public repositories matching this topic...

ethack
ethack commented Dec 20, 2019

Besides incoming blacklisted connections, external to internal traffic isn't super useful in any of our analysis modules. And incoming blacklisted connections is of questionable usefulness as well since the things that normally scan everything on the internet will also normally end up on blacklists. We're not trying to detect someone attacking coming in. We're trying to detect already compromised

colesmj
colesmj commented Oct 21, 2018

"AA03": { "description": "Weakness in SSO Authorization", "source": (Process, Element), "target": (Process, Server), "condition": "target.implementsAuthenticationScheme is False", },

What if the Process implements BasicAuth or uses mutual TLS (neither of which is SSO)?
If the Process uses SAML or OAuth, then maybe.
Maybe authenticationScheme as a string var is neces

Improve this page

Add a description, image, and links to the threat topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the threat topic, visit your repo's landing page and select "manage topics."

Learn more

You can’t perform that action at this time.