A custom MITRE ATT&CK®-style framework for insider threat detection and investigation — structured as a kill chain, mapped to ATT&CK, with 130+ detection ID mappings.
-
Updated
Jun 4, 2026 - HTML
A custom MITRE ATT&CK®-style framework for insider threat detection and investigation — structured as a kill chain, mapped to ATT&CK, with 130+ detection ID mappings.
Quick and dirty method do data exfil binary files in the form of hex strings to GCP's cloud logging easily bypassing most DLP
Add a description, image, and links to the dataloss topic page so that developers can more easily learn about it.
To associate your repository with the dataloss topic, visit your repo's landing page and select "manage topics."