Volatile Cedar
Associated Group Descriptions |
|
Name | Description |
---|---|
Lebanese Cedar | (Citation: ClearSky Lebanese Cedar Jan 2021) |
Techniques Used |
||||
Domain | ID | Name | Use | |
---|---|---|---|---|
Enterprise | T1595 | .002 | Active Scanning: Vulnerability Scanning |
Volatile Cedar has performed vulnerability scans of the target server.(Citation: CheckPoint Volatile Cedar March 2015)(Citation: ClearSky Lebanese Cedar Jan 2021) |
.003 | Active Scanning: Wordlist Scanning |
Volatile Cedar has used DirBuster and GoBuster to brute force web directories and DNS subdomains.(Citation: ClearSky Lebanese Cedar Jan 2021) |
||
Enterprise | T1505 | .003 | Server Software Component: Web Shell |
Volatile Cedar can inject web shell code into a server.(Citation: CheckPoint Volatile Cedar March 2015)(Citation: ClearSky Lebanese Cedar Jan 2021) |
Software |
|||
ID | Name | References | Techniques |
---|---|---|---|
S0569 | Explosive | (Citation: CheckPoint Volatile Cedar March 2015) (Citation: ClearSky Lebanese Cedar Jan 2021) | System Network Configuration Discovery, Modify Registry, Data from Removable Media, Keylogging, System Owner/User Discovery, Symmetric Cryptography, Ingress Tool Transfer, Web Protocols, Native API, Clipboard Data, System Information Discovery, Hidden Files and Directories |
S0572 | Caterpillar WebShell | (Citation: CheckPoint Volatile Cedar March 2015) (Citation: ClearSky Lebanese Cedar Jan 2021) | Process Discovery, Data from Local System, System Network Configuration Discovery, File and Directory Discovery, Brute Force, Windows Command Shell, System Service Discovery, Modify Registry, Local Groups, Exfiltration Over C2 Channel, System Information Discovery, System Owner/User Discovery, Ingress Tool Transfer, Rootkit, Network Service Discovery |
Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.