Vendor: Unix

November 29, 2023 · View on GitHub

Product: Unix Sendmail

RulesModelsMITRE ATT&CK® TTPsActivity TypesParsers
3917344
Use-CaseActivity Types/ParsersMITRE ATT&CK® TTPContent
Data Leakdlp-email-alert-out
unix-sm-kv-email-send
unix-sm-kv-email-attach
unix-sm-kv-email-client
unix-sm-kv-email-envelopesender
unix-sm-str-email-virusclean
unix-sm-kv-email-delay
unix-sm-kv-email-send-success-from
unix-sm-kv-email-send-success-to

dlp-email-alert-out-failed
unix-sm-kv-email-send
unix-sm-kv-email-attach
unix-sm-kv-email-client
unix-sm-kv-email-envelopesender
unix-sm-str-email-virusclean
unix-sm-kv-email-delay
unix-sm-kv-email-send-success-from
unix-sm-kv-email-send-success-to
T1048.003 - Exfiltration Over Alternative Protocol: Exfiltration Over Unencrypted/Obfuscated Non-C2 Protocol
  • 34 Rules
  • 16 Models
Malwaredlp-email-alert-in
unix-sm-kv-email-send
unix-sm-kv-email-attach
unix-sm-kv-email-client
unix-sm-kv-email-envelopesender
unix-sm-str-email-virusclean
unix-sm-kv-email-delay
unix-sm-kv-email-send-success-from
unix-sm-kv-email-send-success-to

dlp-email-alert-out
unix-sm-kv-email-send
unix-sm-kv-email-attach
unix-sm-kv-email-client
unix-sm-kv-email-envelopesender
unix-sm-str-email-virusclean
unix-sm-kv-email-delay
unix-sm-kv-email-send-success-from
unix-sm-kv-email-send-success-to
T1190 - Exploit Public Fasing Application
  • 1 Rules
Next Page -->>

MITRE ATT&CK® Framework for Enterprise

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Valid Accounts

Exploit Public Fasing Application

Valid Accounts

Valid Accounts

Valid Accounts

Exfiltration Over Alternative Protocol

Exfiltration Over Alternative Protocol: Exfiltration Over Unencrypted/Obfuscated Non-C2 Protocol