TTPs#3 : 공격자의 악성코드 활용 전략 분석

2020-09-11 KRCERT TTPs #3: Analysis of Attackers’ Malware Usage Strategies

https://www.krcert.or.kr/kr/bbs/view.do?searchCnd=1&bbsId=B0000127&searchWrd=TTP&menuNo=205021&pageIndex=1&categoryCode=&nttId=35608

Attachments

TTPs_3_공격자의_악성코드_활용_전략_분석.pdf (4 MB)

Thumbnail for TTPs#3 : 공격자의 악성코드 활용 전략 분석

The source analyzes attacker malware tradecraft through a MITRE ATT&CK-oriented lens, focusing on how malware is used after execution to retrieve additional scripts from command-and-control infrastructure, inject DLLs into privileged processes, and collect user account information through keylogging. It also highlights infection through shared content and the limits of IOC-only defenses, making the report useful for defensive mapping of post-compromise malware behavior.

Related Reports

« Back