ATT&CK 기법 · Collection
Data from Local System T1005
이 기법을 다룬 REVELARE 한국어 위협 분석 5편 · Collection
이 기법을 다룬 분석
MITRE 공식 정의
Adversaries may search local system sources, such as file systems, configuration files, local databases, virtual machine files, or process memory, to find files of interest and sensitive data prior to Exfiltration. Adversaries may do this using a [Command and Scripting Interpreter](https://attack.mitre.org/techniques/T1059), such as [cmd](https://attack.mitre.org/software/S0106) as well as a [Network Device CLI](https://attack.mitre.org/techniques/T1059/008), which have func…
플랫폼: ESXi, Linux, macOS, Network Devices, Windows