# AN1926 — Detection of Unauthorized Command Message (ICS)
## Descrição
Analítico para detecção de — na plataforma ICS.
**Plataformas:** ICS
---
### Fontes de Log
| Fonte | Detalhe |
|-------|--------|
| Process History/Live Data (DC0107) | Operational Databases |
| Application Log Content (DC0038) | Application Log |
| Network Traffic Flow (DC0078) | Network Traffic |
| Process/Event Alarm (DC0109) | Operational Databases |
| Network Traffic Content (DC0085) | Network Traffic |
### Data Components Utilizados
- [[dc0038-application-log-content|DC0038]]
- [[dc0078-network-traffic-flow|DC0078]]
- [[dc0085-network-traffic-content|DC0085]]
- [[dc0107|DC0107]]
- [[dc0109|DC0109]]
---
*Fonte: [MITRE ATT&CK — AN1926](https://attack.mitre.org/detectionstrategies/DET0794#AN1926)*