Skip to content

DeTTECT Editor & Latest Data Sources #133

@BytesInFlight

Description

@BytesInFlight

How can I open the DeTTECT editor in a way that it will either natively use the latest data sources from MITRE ATT&CK or reference my local stix path which I added based on other advice posted in this project's issue tracker?

The issue I'm having is that when I open up the editor it doesn't recognize the some of the data sources and perform auto completion. For example, Process Creation auto completes as expected, but OS API Execution doesn't even show up on the list as an option.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions