open-menu
closeme
HackTool - Htran/NATBypass Execution
calendar
Dec 1, 2023
·
attack.command_and_control
attack.t1090
attack.s0040
·
Share on:
twitter
facebook
linkedin
copy
PUA - Fast Reverse Proxy (FRP) Execution
calendar
Dec 1, 2023
·
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
PUA - NPS Tunneling Tool Execution
calendar
Dec 1, 2023
·
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
New Port Forwarding Rule Added Via Netsh.EXE
calendar
Oct 18, 2023
·
attack.lateral_movement
attack.defense_evasion
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
PUA- IOX Tunneling Tool Execution
calendar
Oct 18, 2023
·
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
Communication To Ngrok Tunneling Service
calendar
Oct 17, 2023
·
attack.exfiltration
attack.command_and_control
attack.t1567
attack.t1568.002
attack.t1572
attack.t1090
attack.t1102
attack.s0508
·
Share on:
twitter
facebook
linkedin
copy
Communication To Ngrok Tunneling Service - Linux
calendar
Oct 17, 2023
·
attack.exfiltration
attack.command_and_control
attack.t1567
attack.t1568.002
attack.t1572
attack.t1090
attack.t1102
attack.s0508
·
Share on:
twitter
facebook
linkedin
copy
Ngrok Usage with Remote Desktop Service
calendar
Oct 17, 2023
·
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
Suspicious TCP Tunnel Via PowerShell Script
calendar
Oct 17, 2023
·
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
Malicious IP Address Sign-In Failure Rate
calendar
Sep 11, 2023
·
attack.t1090
attack.command_and_control
·
Share on:
twitter
facebook
linkedin
copy
Malicious IP Address Sign-In Suspicious
calendar
Sep 11, 2023
·
attack.t1090
attack.command_and_control
·
Share on:
twitter
facebook
linkedin
copy
Sign-In From Malware Infected IP
calendar
Sep 6, 2023
·
attack.t1090
attack.command_and_control
·
Share on:
twitter
facebook
linkedin
copy
Cloudflared Tunnel Connections Cleanup
calendar
May 17, 2023
·
attack.command_and_control
attack.t1102
attack.t1090
attack.t1572
·
Share on:
twitter
facebook
linkedin
copy
Cloudflared Tunnel Execution
calendar
May 17, 2023
·
attack.command_and_control
attack.t1102
attack.t1090
attack.t1572
·
Share on:
twitter
facebook
linkedin
copy
RDP Port Forwarding Rule Added Via Netsh.EXE
calendar
Feb 16, 2023
·
attack.lateral_movement
attack.defense_evasion
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
Connection Proxy
calendar
Oct 25, 2022
·
attack.defense_evasion
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
PortProxy Registry Key
calendar
Oct 9, 2022
·
attack.lateral_movement
attack.defense_evasion
attack.command_and_control
attack.t1090
·
Share on:
twitter
facebook
linkedin
copy
to-top