diff --git a/galaxies/mitre-attack-pattern.json b/galaxies/mitre-attack-pattern.json index 75b9220..577bf9d 100644 --- a/galaxies/mitre-attack-pattern.json +++ b/galaxies/mitre-attack-pattern.json @@ -5,5 +5,51 @@ "namespace": "mitre-attack", "type": "mitre-attack-pattern", "uuid": "c4e851fa-775f-11e7-8163-b774922098cd", - "version": 6 + "kill_chain_order": { + "mitre-pre-attack": [ + "priority-definition-planning", + "priority-definition-direction", + "target-selection", + "technical-information-gathering", + "people-information-gathering", + "organizational-information-gathering", + "technical-weakness-identification", + "people-weakness-identification", + "organizational-weakness-identification", + "adversary-opsec", + "establish-&-maintain-infrastructure", + "persona-development", + "build-capabilities", + "test-capabilities", + "stage-capabilities" + ], + "mitre-mobile-attack": [ + "initial-access", + "persistence", + "privilege-escalation", + "defense-evasion", + "credential-access", + "discovery", + "lateral-movement", + "effects", + "collection", + "exfiltration", + "network-effects", + "remote-service-effects" + ], + "mitre-attack": [ + "initial-access", + "execution", + "persistence", + "privilege-escalation", + "defense-evasion", + "credential-access", + "discovery", + "lateral-movement", + "collection", + "exfiltration", + "command-and-control" + ] + }, + "version": 7 }