Get FalconAttck - CrowdStrike/psfalcon GitHub Wiki

Get-FalconAttck

SYNOPSIS

Search for Mitre ATT&CK tactic and technique information related to specific actors

DESCRIPTION

Requires 'Actors (Falcon Intelligence): Read'.

PARAMETERS

Name Type Description Min Max Allowed Pipeline PipelineByName
Id String[] Tactic and technique identifier, by actor X
Slug String Actor identifier ('slug')

SYNTAX

Get-FalconAttck [-Slug] <String> [-WhatIf] [-Confirm] [<CommonParameters>]
Get-FalconAttck -Id <String[]> [-WhatIf] [-Confirm] [<CommonParameters>]

REFERENCE

Endpoints

GET /intel/queries/mitre/v1
POST /intel/entities/mitre/v1

falconpy

QueryMitreAttacks
PostMitreAttacks

USAGE

2023-04-25: PSFalcon v2.2.5

⚠️ **GitHub.com Fallback** ⚠️