Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Absolute SIEM Connector |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Airlock |
|
T1496 - Resource Hijacking |
|
Airlock Web Application Firewall |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Cloud Akamai |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
AWS GuardDuty |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Apache |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
AssetView |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Auth0 |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Barracuda Firewall |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
BeyondTrust Privilege Management |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Bitdefender GravityZone |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Cato Cloud |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Centrify Authentication Service |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Check Point Identity Awareness |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Check Point NGFW |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Check Point Security Gateway |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Check Point Security Gateway Virtual Edition (vSEC) |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Check Point Threat Prevention |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
AnyConnect |
|
T1496 - Resource Hijacking |
|
Cisco Adaptive Security Appliance |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Cisco Cloud Web Security |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Cisco Firepower |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Cisco Meraki MX appliances |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Cisco NPE |
|
T1496 - Resource Hijacking |
|
Cisco Secure Web Appliance |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Cisco Umbrella |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
IronPort Email |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
IronPort Web Security |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Proxy Umbrella |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Citrix AppFW |
|
T1496 - Resource Hijacking |
|
Citrix Netscaler |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Citrix Netscaler VPN |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Citrix ShareFile |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Netscaler WAF |
|
T1496 - Resource Hijacking |
|
Web Logging |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Cloudflare WAF |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Falcon |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
CyberArk Vault |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Digital Arts i-FILTER for Business |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Digital Guardian Endpoint Protection |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Dropbox |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
DTEX InTERCEPT |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
ESET Endpoint Security |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
ESector DEFESA |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
EdgeWave iPrism |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
F5 Advanced Web Application Firewall (WAF) |
|
T1496 - Resource Hijacking |
|
F5 BIG-IP Advanced Firewall Module (AFM) |
|
T1496 - Resource Hijacking |
|
F5 BIG-IP Application Security Manager (ASM) |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
F5 Silverline |
|
T1496 - Resource Hijacking |
|
WebSafe |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
FireEye Endpoint Security (HX) |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
FireEye Network Security (NX) |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Forcepoint NGFW |
|
T1496 - Resource Hijacking |
|
Websense Secure Gateway |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Forescout CounterACT |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Fortinet Enterprise Firewall |
|
T1496 - Resource Hijacking |
|
Fortinet FortiWeb |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Fortinet UTM |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Fortinet VPN |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
GCP Squid Proxy |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Aruba ClearPass Access Control and Policy Management |
|
T1496 - Resource Hijacking |
|
Aruba Wireless controller |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Terraform |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Enterprise Network Firewall |
|
T1496 - Resource Hijacking |
|
Unified Security Gateway |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
IBM Endpoint Manager |
|
T1496 - Resource Hijacking |
|
IBM Lotus Notes |
|
T1496 - Resource Hijacking |
|
IBM Racf |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
IBM Security Access Manager |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
IMSVA |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
IPTables |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
IXIA ThreatArmor |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Incapsula |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
InfoWatch |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Infoblox |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
JH |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Juniper Networks |
|
T1496 - Resource Hijacking |
|
Juniper Networks Pulse Secure |
|
T1496 - Resource Hijacking |
|
Juniper SRX |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
LanScope Cat |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Linux CentOs |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
LogRhythm |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
McAfee Web Gateway |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Advanced Threat Analytics (ATA) |
|
T1496 - Resource Hijacking |
|
IIS |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Microsoft Azure |
|
T1496 - Resource Hijacking |
|
Microsoft Azure Active Directory |
|
T1496 - Resource Hijacking |
|
Microsoft Defender ATP |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Microsoft Office 365 |
|
T1496 - Resource Hijacking |
|
Microsoft SQL Server |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Microsoft Sysmon |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Microsoft Windows |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Web Application Proxy |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Web Application Proxy-TLS Gateway |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Windows Defender |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Mimecast Email Security |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Targeted Threat Protection - URL |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Netskope Security Cloud |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
ObserveIT |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Oracle Solaris |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
NGFW |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
PowerSentry |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Qualys |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
InsightVM |
|
T1496 - Resource Hijacking |
|
Nexpose |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Red Canary |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
SIGSCI |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
NGAF |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
iSensor IPS |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
SecurityExpert |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
SentinelOne |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Shibboleth IdP |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
ClientView |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Sonicwall |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Sophos Endpoint Protection |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Sophos Firewall |
|
T1496 - Resource Hijacking |
|
Sophos UTM |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Sophos XG Firewall |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Specops Password Reset |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Squid |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
StealthIntercept |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Symantec Blue Coat ProxySG Appliance |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Symantec EDR |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Symantec Endpoint Protection |
|
T1496 - Resource Hijacking |
|
Symantec Fireglass |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Symantec Secure Web Gateway |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Symantec WSS |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Endpoint Platform |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Tenable.io |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
TitanFTP |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Deep Security Agent |
|
T1496 - Resource Hijacking |
|
InterScan Web Security |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
OfficeScan |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Trend Micro |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
USB |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Auditbeat |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Unix |
|
T1496 - Resource Hijacking |
|
Unix Auditd |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Carbon Black |
|
T1496 - Resource Hijacking |
|
Carbon Black EDR |
|
T1496 - Resource Hijacking |
|
NSX FW |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
VMware Carbon Black App Control |
|
T1496 - Resource Hijacking |
|
VMware Carbon Black Cloud Endpoint Standard |
|
T1496 - Resource Hijacking |
|
VMware NSX |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Vectra Cognito Detect |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Watchguard |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Zeek Network Security Monitor |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
Zscaler Internet Access |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Zscaler Private Access |
|
T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
eDocs |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
iManage |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|
Product | Event Types | MITRE TTP | Content |
---|---|---|---|
xsuite |
|
T1071.001 - Application Layer Protocol: Web Protocols T1496 - Resource Hijacking |
|