Advisor

Exfiltration 15 articles

01
Data Compression and Archiving for Exfiltration
Overview Data compression and archiving for exfiltration is a technique used by adversaries to reduce the size of collected data and consolidate multiple files into a single package for efficient…
02
DNS Data Exfiltration
Overview DNS Data Exfiltration is a technique where adversaries leverage the Domain Name System (DNS) protocol to covertly transmit stolen data from a compromised environment to an external recipient. This…
03
Email-Based Data Exfiltration
Overview Email-Based Data Exfiltration is a technique where adversaries use email channels to transfer sensitive or proprietary information outside an organization. This method is employed during the exfiltration phase of…
04
Encrypted Data Exfiltration
Overview Encrypted Data Exfiltration is a technique used by adversaries to covertly transfer sensitive information from a compromised environment to an external location while encrypting the data in transit. This…
05
Exfiltration from SaaS Platforms
Overview Exfiltration from SaaS platforms involves adversaries extracting sensitive data from cloud-based software services as part of their attack operations. This technique is typically employed during the later stages of…
06
Exfiltration Over Command and Control Channels
Overview Exfiltration Over Command and Control Channels is a technique where adversaries use established command and control (C2) communication pathways to stealthily transfer data from a compromised environment to an…
07
Exfiltration Over FTP and SFTP
Overview Exfiltration over FTP (File Transfer Protocol) and SFTP (Secure File Transfer Protocol) is a technique used by adversaries to transfer stolen data from a compromised environment to an external…
08
Exfiltration Over Web Services
Overview Exfiltration Over Web Services is a technique used by adversaries to transfer stolen data from a compromised environment to an external location via legitimate web-based services. This method leverages…
09
Exfiltration via API Abuse
Overview Exfiltration via API abuse is a technique where adversaries leverage legitimate application programming interfaces (APIs) to extract sensitive data from a target environment. This method enables attackers to blend…
10
Exfiltration via Cloud Storage Services
Overview Exfiltration via cloud storage services is a technique where adversaries transfer stolen data to cloud-based repositories to evade detection and facilitate remote access. This method plays a critical role…
11
Insider-Assisted Data Exfiltration
Overview Insider-Assisted Data Exfiltration is a technique where adversaries leverage trusted insiders within an organization to facilitate unauthorized transfer of sensitive data outside the network. This method plays a critical…
12
Low-and-Slow Data Exfiltration
Overview Low-and-Slow Data Exfiltration is a technique used by adversaries to stealthily transfer sensitive data out of a compromised environment over an extended period. By minimizing the volume and frequency…
13
Physical Media Data Exfiltration
Overview Physical Media Data Exfiltration is a technique where adversaries transfer sensitive or valuable data from a compromised environment onto removable physical storage devices. This method is often employed during…
14
Scheduled Data Exfiltration
Overview Scheduled Data Exfiltration is a technique where adversaries automate the unauthorized transfer of data at predetermined intervals or times to avoid detection. This method enables attackers to stealthily extract…
15
Steganographic Data Exfiltration
Overview Steganographic Data Exfiltration is a technique where adversaries conceal sensitive information within seemingly innocuous files or data streams to evade detection during data theft operations. It is commonly employed…