Update security ML jobs to include MITRE ATT&CK framework tactics and technique metdata#19220
Update security ML jobs to include MITRE ATT&CK framework tactics and technique metdata#19220ymao1 wants to merge 5 commits into
Conversation
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
This comment has been minimized.
TL;DR
Remediation
Investigation detailsRoot CauseThe transform definition uses a hard-coded versioned pipeline name:
Buildkite attempted to build package Evidence
Verification
Follow-up
Note 🔒 Integrity filter blocked 3 itemsThe following items were blocked because they don't meet the GitHub integrity level.
To allow these resources, lower tools:
github:
min-integrity: approved # merged | approved | unapproved | noneWhat is this? | From workflow: PR Buildkite Detective Give us feedback! React with 🚀 if perfect, 👍 if helpful, 👎 if not. |
💚 Build Succeeded
History
|
Proposed commit message
Adding MITRE ATT&CK framework tactic and technique codes to the custom_settings field for all security ML jobs. These mappings were derived from the prebuilt detection ML rules that include the mapping within the rule definitions. Techniques and subtechniques are stored in the same array.
Checklist
changelog.ymlfile.Author's Checklist
How to test this PR locally
Related issues
Screenshots