ATT&CKReferencesFireEye Hacking Team

FireEye Hacking Team

FireEye Threat Intelligence. (2015, July 13). Demonstrating Hustle, Chinese APT Groups Quickly Use Zero-Day Vulnerability (CVE-2015-5119) Following Hacking Team Leak. Retrieved January 25, 2016.

Open the source

Techniques0

Not cited by any technique.

Groups0

None recorded.

Software1

Campaigns0

None recorded.

Procedure examples4

TechniqueUsed byProcedure example
T1057
Process Discovery
Malwaregh0st RAT

gh0st RAT has the capability to list processes.

T1059
Command and Scripting Interpreter
Malwaregh0st RAT

gh0st RAT is able to open a remote shell to execute commands.

T1070.004
File Deletion
Malwaregh0st RAT

gh0st RAT has the capability to to delete files.

T1685.005
Clear Windows Event Logs
Malwaregh0st RAT

gh0st RAT is able to wipe event logs.

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.