ATT&CK Software AnalysisAADInternals (S0677)
A defensive guide to the Enterprise ATT&CK software record S0677, including identification, dual-use context, behavior analytics, and investigation. The official record summarizes public reporting describing a PowerShell framework used to administer, enumerate, and test Azure Active Directory environments.
ATT&CK Software AnalysisACAD/Medre.A (S1000)
A defensive guide to the Enterprise ATT&CK software record S1000, including identification, dual-use context, behavior analytics, and investigation. The official record summarizes public reporting describing a worm that collects AutoCAD drawings and can expose operational or engineering information.
AI safety engineeringAI Guardrail Engineering
AI guardrail engineering implements enforceable limits around model inputs, outputs, tools, data, and operating conditions.
Generative AI application securityAI Output Validation
AI output validation treats generated text, code, commands, queries, and structured data as untrusted until the consuming system verifies it.
ATT&CK Software AnalysisASPXSpy (S0073)
A defensive guide to the Enterprise ATT&CK software record S0073, including identification, dual-use context, behavior analytics, and investigation. The official record summarizes public reporting describing a web shell that can provide remote administration of a compromised web server.
ATT&CK Software AnalysisAbstractEmu (S1061)
A defensive guide to the Enterprise ATT&CK software record S1061, including identification, dual-use context, behavior analytics, and investigation. The official record summarizes public reporting describing Android malware reported in applications that abused known exploits to obtain root permissions.