ATT&CK 기법 · Collection
Screen Capture T1113
이 기법을 다룬 REVELARE 한국어 위협 분석 3편 · Collection
이 기법을 다룬 분석
MITRE 공식 정의
Adversaries may attempt to take screen captures of the desktop to gather information over the course of an operation. Screen capturing functionality may be included as a feature of a remote access tool used in post-compromise operations. Taking a screenshot is also typically possible through native utilities or API calls, such as <code>CopyFromScreen</code>, <code>xwd</code>, or <code>screencapture</code>.(Citation: CopyFromScreen .NET)(Citation: Antiquated Mac Malware)
플랫폼: Linux, macOS, Windows