Technique List

Technique Name Technique ID's Categories Has Snippet(s) Has Rules(s) Creation Date
NOP Sled U0206 Anti-Disassembly 5 years
Inline Hooking U1211 F0015.002 Process Manipulating 5 years
LOLbins U1004 Others 5 years
COM Hijacking U1212 Process Manipulating 5 years
Ctrl+Inject U1213 Process Manipulating 5 years
Propagate U1214 Process Manipulating 5 years
Process Doppelgänging U1215 Process Manipulating 5 years
PE Injection U1216 E1055.002 Process Manipulating 5 years
IAT Hooking U1217 F0015.003 Process Manipulating 5 years
Injection using Shims U1218 E1055.m03 Process Manipulating 5 years
Extra Window Memory Injection U1219 E1055.011 Process Manipulating 5 years
Atom Bombing U1220 Process Manipulating 5 years
APC injection U1221 E1055.004 Process Manipulating 5 years
Image File Execution Options Injection U1222 Process Manipulating 5 years
Thread Execution Hijacking U1223 E1055.003 Process Manipulating 5 years
Reflective DLL injection U1224 Process Manipulating 5 years
SuspendThread U0101 C0055 Anti-Debugging 5 years
Guard Pages U0102 B0006.006 Anti-Debugging 5 years
NtSetDebugFilterState U0103 Anti-Debugging 5 years
Code Cave U0502 Antivirus/EDR Evasion 5 years
Stolen certificate U0503 Antivirus/EDR Evasion 5 years
Redirect Antivirus Website U0504 Antivirus/EDR Evasion 5 years
Time Bomb U1005 B0007.008 Sandbox Evasion, Others 5 years, 1 month
Shortcut Hiding U0505 Antivirus/EDR Evasion 5 years, 1 month
Geofencing U1006 Others 5 years, 1 month
Custom Encoding U0702 E1027.m03 Data Obfuscation 5 years, 1 month
Cryptography U0703 E1027.m04 Data Obfuscation 5 years, 1 month
ROL U0704 Data Obfuscation 5 years, 1 month
Caesar Cipher U0705 Data Obfuscation 5 years, 1 month
Base64 U0706 E1027.m02 Data Obfuscation 5 years, 1 month

Filter