# AN1879 — Detection of Spoof Reporting Message (ICS) ## Descrição Analítico para detecção de — na plataforma ICS. **Plataformas:** ICS --- ### Fontes de Log | Fonte | Detalhe | |-------|--------| | Network Traffic Flow (DC0078) | Network Traffic | | Device Alarm (DC0108) | Operational Databases | | Windows Registry Key Modification (DC0063) | Windows Registry | | Network Traffic Content (DC0085) | Network Traffic | ### Data Components Utilizados - [[dc0063-windows-registry-key-modification|DC0063]] - [[dc0078-network-traffic-flow|DC0078]] - [[dc0085-network-traffic-content|DC0085]] - [[dc0108|DC0108]] --- *Fonte: [MITRE ATT&CK — AN1879](https://attack.mitre.org/detectionstrategies/DET0746#AN1879)*