Technique List

Technique Name Technique ID's Categories Has Snippet(s) Has Rules(s) Creation Date
XSL Script Processing T1220 Defense Evasion [Mitre] 4 days, 8 hours
Virtualization/Sandbox Evasion: Time Based Evasion T1497.003 Defense Evasion [Mitre] 4 days, 8 hours
Virtualization/Sandbox Evasion: User Activity Based Checks T1497.002 Defense Evasion [Mitre] 4 days, 8 hours
Virtualization/Sandbox Evasion: System Checks T1497.001 Defense Evasion [Mitre] 4 days, 8 hours
Valid Accounts: Local Accounts T1078.003 Defense Evasion [Mitre] 4 days, 9 hours
Valid Accounts: Domain Accounts T1078.002 Defense Evasion [Mitre] 4 days, 9 hours
Valid Accounts: Default Accounts T1078.001 Defense Evasion [Mitre] 4 days, 9 hours
ScrubCrypt U1430 Packers 5 days, 8 hours
Constant Blinding U0707 Data Obfuscation 5 days, 9 hours
Unloading Module with FreeLibrary U0519 Antivirus/EDR Evasion 5 days, 10 hours
AddVectoredExceptionHandler U0125 Anti-Debugging 2 weeks, 1 day
Call to Interrupt Procedure U0124 Anti-Debugging 2 weeks, 1 day
Use Alternate Authentication Material: Pass the Ticket T1550.003 Defense Evasion [Mitre] 2 weeks, 4 days
Use Alternate Authentication Material: Pass the Hash T1550.002 Defense Evasion [Mitre] 2 weeks, 4 days
Trusted Developer Utilities Proxy Execution: MSBuild T1127.001 Defense Evasion [Mitre] 2 weeks, 4 days
Traffic Signaling: Socket Filters T1205.002 Defense Evasion [Mitre] 2 weeks, 4 days
Traffic Signaling: Port Knocking T1205.001 Defense Evasion [Mitre] 2 weeks, 4 days
Template Injection T1221 Defense Evasion [Mitre] 2 weeks, 4 days
System Script Proxy Execution: PubPrn T1216.001 Defense Evasion [Mitre] 2 weeks, 4 days
System Binary Proxy Execution: MMC T1218.014 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Mavinject T1218.013 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Verclsid T1218.012 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Rundll32 T1218.011 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Regsvr32 T1218.010 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Regsvcs/Regasm T1218.009 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Odbcconf T1218.008 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Msiexec T1218.007 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: Mshta T1218.005 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: InstallUtil T1218.004 Defense Evasion [Mitre] 2 weeks, 6 days
System Binary Proxy Execution: CMSTP T1218.003 Defense Evasion [Mitre] 2 weeks, 6 days

Filter