From dd0344989d3578ab6a48ac1de91798a018b61468 Mon Sep 17 00:00:00 2001 From: Denise Vangel-MSFT Date: Fri, 22 May 2020 12:38:34 -0700 Subject: [PATCH] Update client-behavioral-blocking.md --- .../microsoft-defender-atp/client-behavioral-blocking.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/security/threat-protection/microsoft-defender-atp/client-behavioral-blocking.md b/windows/security/threat-protection/microsoft-defender-atp/client-behavioral-blocking.md index 224547269b..516fc24bd9 100644 --- a/windows/security/threat-protection/microsoft-defender-atp/client-behavioral-blocking.md +++ b/windows/security/threat-protection/microsoft-defender-atp/client-behavioral-blocking.md @@ -50,7 +50,7 @@ Behavior-based detections are named according to the [MITRE ATT&CK Matrix for En |Initial Access | Behavior:Win32/InitialAccess.*!ml | |Execution |Behavior:Win32/Execution.*!ml | |Persistence |Behavior:Win32/Persistence.*!ml | -|Privilege Escalation |Behavior:Win32/|PrivilegeEscalation.*!ml | +|Privilege Escalation |Behavior:Win32/PrivilegeEscalation.*!ml | |Defense Evasion |Behavior:Win32/DefenseEvasion.*!ml | |Credential Access |Behavior:Win32/CredentialAccess.*!ml | |Discovery |Behavior:Win32/Discovery.*!ml |