ATT&CKReferencesTrendMicro New Andariel Tactics July 2018

TrendMicro New Andariel Tactics July 2018

Chen, Joseph. (2018, July 16). New Andariel Reconnaissance Tactics Uncovered. Retrieved September 29, 2021.

Open the source

Techniques0

Not cited by any technique.

Groups1

Software0

None recorded.

Campaigns0

None recorded.

Procedure examples3

TechniqueUsed byProcedure example
T1189
Drive-by Compromise
GroupAndariel

Andariel has used watering hole attacks, often with zero-day exploits, to gain initial access to victims within a specific IP range.

T1203
Exploitation for Client Execution
GroupAndariel

Andariel has exploited numerous ActiveX vulnerabilities, including zero-days.

T1592.002
Software
GroupAndariel

Andariel has inserted a malicious script within compromised websites to collect potential victim information such as browser type, system language, Flash Player version, and other data.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.