{
  "type": "course-of-action",
  "spec_version": "2.1",
  "id": "course-of-action--059ba11e-e3dc-49aa-84ca-88197f40d4ea",
  "created": "2019-06-11T17:06:56.230Z",
  "created_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
  "revoked": false,
  "external_references": [
    {
      "source_name": "mitre-attack",
      "url": "https://attack.mitre.org/mitigations/M0948",
      "external_id": "M0948"
    }
  ],
  "object_marking_refs": [
    "marking-definition--fa42a846-8d90-4e51-bc29-71d5b4802168"
  ],
  "modified": "2025-04-16T21:26:25.920Z",
  "name": "Application Isolation and Sandboxing",
  "description": "Restrict the execution of code to a virtual environment on or in-transit to an endpoint system.",
  "labels": [
    "IEC 62443-3-3:2013 - SR 5.4",
    "IEC 62443-4-2:2019 - CR 5.4",
    "NIST SP 800-53 Rev. 5 - SI-3"
  ],
  "x_mitre_modified_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
  "x_mitre_deprecated": false,
  "x_mitre_domains": [
    "ics-attack"
  ],
  "x_mitre_version": "1.0",
  "x_mitre_attack_spec_version": "3.2.0"
}