From IOC to Query - How to search your environment based on available research
Tags
attack-pattern: Data Software - T1592.002
Common Information
Type Value
UUID 87a77698-671d-4bce-be37-0aaf23ae88e6
Fingerprint 3f58326560a56cb1
Analysis status DONE
Considered CTI value -2
Text language
Published Sept. 26, 2017, 6:39 p.m.
Added to db Jan. 18, 2023, 9:23 p.m.
Last updated Nov. 17, 2024, 5:57 p.m.
Headline NetWitness Community
Title From IOC to Query - How to search your environment based on available research
Detected Hints/Tags/Attributes 36/1/5
Attributes
Details Type #Events CTI Value
Details Domain 20
alias.host
Details Domain 10
rsa.com
Details IPv4 3
216.126.225.148
Details IPv4 1
216.126.225.163
Details Threat Actor Identifier - APT 297
APT27