Compromise Data Integrity
May 1, 2024 ยท View on GitHub
| ID | B0016 |
| Objective(s) | Impact |
| Related ATT&CK Techniques | Data Manipulation: Stored Data Manipulation (T1565.001) |
| Impact Type | Integrity |
| Version | 2.3 |
| Created | 1 August 2019 |
| Last Modified | 29 April 2024 |
Compromise Data Integrity
Data stored on the file system of a compromised system is manipulated to compromise its integrity. Manipulative actions in this context include unauthorized insertion, deletion, or modification of data [1].
The related Data Manipulation: Stored Data Manipulation (T1565.001) ATT&CK sub-technique was defined subsequent to this MBC behavior.
Use in Malware
| Name | Date | Method | Description |
|---|---|---|---|
| DYEPACK | 2015 | -- | DYEPACK alters records in databases used for SWIFT transactions. [2] |
References
[1] "TRISIS Malware: Analysis of Safety System Targeted Malware, version 1.20171213," Dragos, 13 Dec. 2017. [Online]. Available: https://www.dragos.com/wp-content/uploads/TRISIS-01.pdf.
[2] https://www.mandiant.com/sites/default/files/2021-09/rpt-apt38-2018-web_v5-1.pdf