#T1560.003 Archive via Custom Method
Technique
- Tactics: Collection
- Description:
An adversary may compress or encrypt data that is collected prior to exfiltration using a custom method. Adversaries may choose to use custom archival methods, such as encryption with XOR or stream ciphers implemented with no external library or utility references. Custom implementations of well-known compression algorithms have also been used.(Citation: ESET Sednit Part 2)
- First Seen: APT Profile: Who is Lazarus Group? • 2021-12-02
-
5
Tagged Reports
-
3
Unique Authors
-
1,351
Active Days
Tagged Reports
2025-08-13
Cyfirma
2025-02-12
Cyfirma
2024-09-12
Cyfirma
2022-07-20
Securonix
2021-12-02
SOCRadar