ABOUT
Overview
Use Cases
Mapping Methodology
Scoring Rubric
Related Projects
ATT&CK OBJECTS
Matrix
Tactics
Techniques
MAPPING FRAMEWORKS
About Mappings
Amazon Web Services (AWS)
Azure
CVE
Google Cloud Platform (GCP)
NIST 800-53
M365
VERIS
You're currently viewing ATT&CK Version 8.2 Enterprise and Azure 06.29.2021.
Change versions here.
Home
Mapping Frameworks
Azure Home
Azure Automation Update Management
Azure
azure_automation_update_management
Mappings
"Use Azure Automation Update Management or a third-party solution to ensure that the most recent security updates are installed on your Windows and Linux VMs. "
Mappings
ATT&CK Version
8.2
ATT&CK Domain
Enterprise
Azure
06.29.2021
Change Versions
Capability ID
Capability Description
Category
Value
ATT&CK ID
ATT&CK Name
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1195
Supply Chain Compromise
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1195.002
Compromise Software Supply Chain
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1195.001
Compromise Software Dependencies and Development Tools
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1072
Software Deployment Tools
azure_automation_update_management
Azure Automation Update Management
protect
significant
T1210
Exploitation of Remote Services
azure_automation_update_management
Azure Automation Update Management
protect
significant
T1211
Exploitation for Defense Evasion
azure_automation_update_management
Azure Automation Update Management
protect
significant
T1068
Exploitation for Privilege Escalation
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1190
Exploit Public-Facing Application
azure_automation_update_management
Azure Automation Update Management
protect
significant
T1212
Exploitation for Credential Access
azure_automation_update_management
Azure Automation Update Management
protect
significant
T1203
Exploitation for Client Execution
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1499
Endpoint Denial of Service
azure_automation_update_management
Azure Automation Update Management
protect
significant
T1499.004
Application or System Exploitation
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1554
Compromise Client Software Binary
azure_automation_update_management
Azure Automation Update Management
protect
partial
T1189
Drive-by Compromise