Contextual data about a cloud volume and activity around it, such as id, type, state, and size
| Name | Channel |
|---|---|
| WinEventLog:Security | 4673, 4674 |
| ID | Name | Technique Detected |
|---|---|---|
| DET0150 | Detection Strategy for File Creation or Modification of Boot Files | T1542.003 |