What MITRE D3FEND D3-FEV: File Eviction (Defensive Tactic - Evict -> File Eviction) requires
MITRE D3FEND D3-FEV (File Eviction) is a Evict defensive technique. File eviction techniques delete files from system storage. Adversaries may place files or programs into a computer's file system to perform malicious actions. As part of the eviction process, these files and programs should be removed to prevent further compromise or reinfection. Examples of malicious types of files are malware which is directly harmful and content files with the intent to deceive users (e.g., phishing.) On Windows systems, antivirus (AV) software should be used to safely and permanently remove. In the D3FEND model it deletes the file. It counters ATT&CK techniques T1003.007, T1003.008, T1005, T1014, T1016, T1018, T1027.001, T1027.002, T1027.004, T1033, and 89 more. Via the Center for Threat-Informed Defense mapping of the countered techniques, it supports NIST SP 800-53 Rev 5 controls AC-02, AC-03, AC-04, AC-05, AC-06, AC-07, AC-10, AC-12.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://d3fend.mitre.org/technique/d3f:FileEviction/
SHA-256 integrity: 94070138cd2f797c48e9671dcf75b6104673f82f03138b28acfe6deedcba1b89
Primary Citations — 7 traced to source
- MITRE D3FEND Defensive Technique D3-FEV: File Eviction (https://d3fend.mitre.org/technique/d3f:FileEviction/)
- MITRE D3FEND Evict Tactic (https://d3fend.mitre.org/tactic/d3f:Evict/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-d3fend-d3-fev-file-eviction.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-d3fend-d3-fev-file-eviction.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-d3fend-d3-fev-file-eviction
- Back to registry: Browse all 10,085 compliance nodes