ATT&CK 기법 · Stealth
Indicator Removal T1070
이 기법을 다룬 REVELARE 한국어 위협 분석 4편 · Stealth
이 기법을 다룬 분석
MITRE 공식 정의
Adversaries may selectively delete or modify artifacts generated to reduce indications of their presence and blend in with legitimate activity. Rather than broadly removing evidence, adversaries may target specific artifacts that appear anomalous or are likely to draw scrutiny, while leaving sufficient data intact to maintain the appearance of normal system behavior. Artifacts such as command histories, log entries, or file metadata may be altered in ways that align with exp…
플랫폼: Containers, ESXi, Linux, macOS, Network Devices, Office Suite, Windows