This website uses cookies. By clicking Accept, you consent to the use of cookies. Click Here to learn more about how we use cookies.
Accept
Reject

NetWitness Community

  • Home
  • Products
    • NetWitness Platform
      • Advisories
      • Documentation
        • Platform Documentation
        • Known Issues
        • Security Fixes
        • Hardware Documentation
        • Threat Content
        • Unified Data Model
        • Videos
      • Downloads
      • Integrations
      • Knowledge Base
    • NetWitness Cloud SIEM
      • Advisories
      • Documentation
      • Knowledge Base
    • NetWitness Detect AI
      • Advisories
      • Documentation
      • Knowledge Base
    • NetWitness Investigator
    • NetWitness Orchestrator
      • Advisories
      • Documentation
      • Knowledge Base
      • Legacy NetWitness Orchestrator
        • Advisories
        • Documentation
  • Community
    • Blog
    • Discussions
    • Events
    • Idea Exchange
  • Support
    • Case Portal
      • Create New Case
      • View My Cases
      • View My Team's Cases
    • Community Support
      • Getting Started
      • News & Announcements
      • Community Support Forum
      • Community Support Articles
    • Product Life Cycle
    • Support Information
    • General Security Advisories
  • Training
    • Blog
    • Certification Program
    • Course Catalog
      • Netwitness XDR
      • EC-Council Training
    • New Product Readiness
    • On-Demand Subscriptions
    • Student Resources
    • Upcoming Events
    • Role-Based Training
  • Technology Partners
  • Trust Center
Sign InRegister Now
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Search instead for 
Did you mean: 
PrakharPandey
Employee PrakharPandey
Employee
since ‎2017-07-20
‎2021-04-13

User Statistics

  • 10 Posts
  • 0 Solutions
  • 4 Likes given
  • 24 Likes received
  • NetWitness Community
  • About PrakharPandey

User Activity

  • Posts
  • Replies

RSA Threat Content mapping with MITRE ATT&CK™

by PrakharPandey 2019-09-19 general.in NetWitness Community Blog • latest reply by TarikBoudjemaa 2020-09-07
2019-09-19
Introduction to MITRE ATT&CK™Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK™) for enterprise is a framework which describes the adversarial actions or tactics from Initial Access (Exploit) to Command & Control (Maintain). ATT&CK™ Enter...

RSA NetWitness Endpoint Application Rules Mapping with MITRE’s ATT&CK™

by PrakharPandey 2019-03-29 general.in NetWitness Community Blog • latest reply by PrakharPandey 2019-09-19
2019-03-29
Introduction to MITRE’s ATT&CK™Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK™) for enterprise is a framework which describes the adversarial actions or tactics from Initial Access (Exploit) to Command & Control (Maintain). ATT&CK™ Ent...

Introduction to MITRE’s ATT&CK™ and Mapping to ESA Rules

by PrakharPandey 2018-08-31 general.in NetWitness Community Blog • latest reply by MohamedShawara 2021-07-05
2018-08-31
Introduction to MITRE’s ATT&CK™ Adversarial Tactics, Techniques, and Common Knowledge (ATT&CK™) for enterprise is a framework which describes the adversarial actions or tactics from Initial Access (Exploit) to Command & Control (Maintain). ATT&CK™ En...

Malspam Delivers Trickbot with new Tricks

by PrakharPandey 2017-08-09 general.in NetWitness Community Blog
2017-08-09
In first week of August 2017, malspam activity was observed delivering the Trickbot banking trojan, which has been heavily active this summer and has now once again evolved. Beginning in 2011, Trickbot actors began targeting banks from countries like...

Re: RSA Threat Content mapping with MITRE ATT&CK™

by PrakharPandey 2019-10-09 general.in NetWitness Community Blog
2019-10-09
Hi Ange Olivier Ambemou‌, I am glad you liked this blog post. We are in the process of mapping UEBA to ATT&CK™ and will keep you updated with the progress. Thanks and Regards,Prakhar

Re: RSA Threat Content mapping with MITRE ATT&CK™

by PrakharPandey 2019-10-09 general.in NetWitness Community Blog
2019-10-09
Hi Jonathan Scher‌,Apologies for the delay. Investigation Feed in LIVE has been updated. The Feed will additionally carry ATT&CK™ Tactics in inv.category Investigation Model Meta Key and ATT&CK™ Techniques in inv.context meta key. The document will b...

Re: RSA Threat Content mapping with MITRE ATT&CK™

by PrakharPandey 2019-09-25 general.in NetWitness Community Blog
2019-09-25
Hi Jonathan,There is an 'Investigation' Feed which maps Tactics to 'inv.category' generated meta key and Techniques to 'inv.context for every piece of RSA Application rules and LUA Parsers. Thanks and Regards,Prakhar

Re: RSA NetWitness Endpoint Application Rules Mapping with MITRE’s ATT&CK™

by PrakharPandey 2019-09-19 general.in NetWitness Community Blog
2019-09-19
Hi My-Phung Pham, Hope you are doing well.We have mapped complete RSA Threat Content (ESA Rules + Application Rules + LUA Parsers) with MITRE ATT&CK™ framework. Please find the new blog post at following link:https://community.rsa.com/community/produ...

Re: RSA Threat Content mapping with MITRE ATT&CK™

by PrakharPandey 2019-09-19 general.in NetWitness Community Blog
2019-09-19
Thanks for reading. I am glad you liked this. Yes, JSONs attached in this post will supersede provided in earlier blog posts. Surely we will keep this updated and notify as well. Regards,Prakhar
View more
Likes from
User Count
Marcin
Marcin Occasional Contributor
1
JpYu
Seeker JpYu Seeker
2
ᴘᴏᴘᴇ
ᴘᴏᴘᴇ Beginner
1
JohnSimmons
JohnSimmons Beginner
1
VadymVedmedenko
VadymVedmedenko Beginner
2
View all
Likes given to
User Count
RSA-IDD-Legacy
RSA-IDD-Legacy Beginner
1
JohnWu1
Occasional Contributor JohnWu1 Occasional Contributor
1
AmyBlackshaw
Occasional Contributor AmyBlackshaw Occasional Contributor
1
AhmedSonbol1
Employee AhmedSonbol1
1
View all
Powered by Khoros
  • Blog
  • Events
  • Discussions
  • Idea Exchange
  • Knowledge Base
  • Case Portal
  • Community Support
  • Product Life Cycle
  • Support Information
  • About the Community
  • Terms & Conditions
  • Privacy Statement
  • Acceptable Use Policy
  • Employee Login
© 2022 RSA Security LLC or its affiliates. All rights reserved.