Reports, blog posts and papers that MITRE cites as evidence.
3865 references
| Citation | Description |
|---|---|
| TrendMicro PE_URSNIF.A2 | Trend Micro. (2014, December 11). PE_URSNIF.A2. Retrieved June 5, 2019. |
| TrendMicro POWELIKS AUG 2014 | Santos, R. (2014, August 1). POWELIKS: Malware Hides In Windows Registry. Retrieved August 9, 2018. |
| TrendMicro POWERSTATS V3 June 2019 | Lunghi, D. and Horejsi, J.. (2019, June 10). MuddyWater Resurfaces, Uses Multi-Stage Backdoor POWERSTATS V3 and New Post-Exploitation Tools. Retrieved May 14, 2020. |
| TrendMicro Patchwork Dec 2017 | Lunghi, D., et al. (2017, December). Untangling the Patchwork Cyberespionage Group. Retrieved July 10, 2018. |
| TrendMicro Pawn Storm 2019 | Hacquebord, F. (n.d.). Pawn Storm in 2019 A Year of Scanning and Credential Phishing on High-Profile Targets. Retrieved December 29, 2020. |
| TrendMicro Pawn Storm Dec 2020 | Hacquebord, F., Remorin, L. (2020, December 17). Pawn Storm’s Lack of Sophistication as a Strategy. Retrieved January 13, 2021. |
| TrendMicro Pikabot 2024 | Shinji Robert Arasawa, Joshua Aquino, Charles Steven Derion, Juhn Emmanuel Atanque, Francisrey Joshua Castillo, John Carlo Marquez, Henry Salcedo, John Rainier Navato, Arianne Dela Cruz, Raymart Yambot & Ian Kenefick. (2024, January 9). Bl… |
| TrendMicro Play | Cj Arsley Mateo, Darrel Tristan Virtusio, Sarah Pearl Camiling, Andrei Alimboyao, Nathaniel Morales, Jacob Santos, Earl John Bareng. (2024, July 19). Play Ransomware Group’s New Linux Variant Targets ESXi, Shows Ties With Prolific Puma. Re… |
| TrendMicro RaspberryRobin 2022 | Christopher So. (2022, December 20). Raspberry Robin Malware Targets Telecom, Governments. Retrieved May 17, 2024. |
| TrendMicro RawPOS April 2015 | TrendLabs Security Intelligence Blog. (2015, April). RawPOS Technical Brief. Retrieved October 4, 2017. |
| TrendMicro Sandworm October 2014 | Wu, W. (2014, October 14). An Analysis of Windows Zero-day Vulnerability ‘CVE-2014-4114’ aka “Sandworm”. Retrieved June 18, 2020. |
| TrendMicro Squiblydoo Aug 2017 | Bermejo, L., Giagone, R., Wu, R., and Yarochkin, F. (2017, August 7). Backdoor-carrying Emails Set Sights on Russian-speaking Businesses. Retrieved March 7, 2019. |
| TrendMicro TA505 Aug 2019 | Trend Micro. (2019, August 27). TA505: Variety in Use of ServHelper and FlawedAmmyy. Retrieved February 22, 2021. |
| TrendMicro TROJ-FAKEAV OCT 2012 | Sioting, S. (2012, October 8). TROJ_FAKEAV.GZD. Retrieved August 8, 2018. |
| TrendMicro Taidoor | Trend Micro. (2012). The Taidoor Campaign. Retrieved November 12, 2014. |
| TrendMicro Tonto Team October 2020 | Daniel Lughi, Jaromir Horejsi. (2020, October 2). Tonto Team - Exploring the TTPs of an advanced threat actor operating a large infrastructure. Retrieved October 17, 2021. |
| TrendMicro Trickbot Feb 2019 | Llimos, N., Pascual, C.. (2019, February 12). Trickbot Adds Remote Application Credential-Grabbing Capabilities to Its Repertoire. Retrieved March 12, 2019. |
| TrendMicro Tropic Trooper Mar 2018 | Horejsi, J., et al. (2018, March 14). Tropic Trooper’s New Strategy. Retrieved November 9, 2018. |
| TrendMicro Tropic Trooper May 2020 | Chen, J.. (2020, May 12). Tropic Trooper’s Back: USBferry Attack Targets Air gapped Environments. Retrieved May 20, 2020. |
| TrendMicro TropicTrooper 2015 | Alintanahin, K. (2015). Operation Tropic Trooper: Relying on Tried-and-Tested Flaws to Infiltrate Secret Keepers. Retrieved June 14, 2019. |
| TrendMicro Ursnif File Dec 2014 | Caragay, R. (2014, December 11). Info-Stealing File Infector Hits US, UK. Retrieved June 5, 2019. |
| TrendMicro Ursnif Mar 2015 | Caragay, R. (2015, March 26). URSNIF: The Multifaceted Malware. Retrieved June 5, 2019. |
| TrendMicro WindowsAppMac | Trend Micro. (2019, February 11). Windows App Runs on Mac, Downloads Info Stealer and Adware. Retrieved April 25, 2019. |
| TrendMicro macOS Dacls May 2020 | Mabutas, G. (2020, May 11). New MacOS Dacls RAT Backdoor Shows Lazarus’ Multi-Platform Attack Capability. Retrieved August 10, 2020. |
| TrendMictro Phishing | Babon, P. (2020, September 3). Tricky 'Forms' of Phishing. Retrieved October 20, 2020. |
| Trendmicro Evolving ThiefQuest 2020 | Gabrielle Joyce Mabutas, Luis Magisa, Steven Du. (2020, July 17). Updates on Quickly-Evolving ThiefQuest macOS Malware. Retrieved April 26, 2021. |
| Trendmicro NPM Compromise | Trendmicro. (2018, November 29). Hacker Infects Node.js Package to Steal from Bitcoin Wallets. Retrieved April 10, 2019. |
| TrendmicroHideoutsLease | Max Goncharov. (2015, July 15). Criminal Hideouts for Lease: Bulletproof Hosting Services. Retrieved March 6, 2017. |
| Trendmicro_IcedID | Kenefick , I. (2022, December 23). IcedID Botnet Distributors Abuse Google PPC to Distribute Malware. Retrieved July 24, 2024. |
| Trendmicro_RansomHub_Dec2024 | Trend Research. (2024, December 20). RansomHub. Retrieved December 23, 2025. |
| Trickbot VNC module July 2021 | Ionut Illascu. (2021, July 14). Trickbot updates its VNC module for high-value targets. Retrieved September 10, 2021. |
| Triton-EENews-2017 | Blake Sobczak. (2019, March 7). The inside story of the world’s most dangerous malware. Retrieved March 25, 2024. |
| TrueSec Gsecdump | TrueSec. (n.d.). gsecdump v2.0b5. Retrieved November 17, 2024. |
| TrumanKroll_SYSTEMBCServer_Jan2024 | Truman, D. (2024, January 19). Inside the SYSTEMBC Command-and-Control Server. Retrieved June 18, 2025. |
| TrustedSec OOB Communications | Tyler Hudak. (2022, December 29). To OOB, or Not to OOB?: Why Out-of-Band Communications are Essential for Incident Response. Retrieved August 30, 2024. |
| Trusteer Carberp October 2010 | Trusteer Fraud Prevention Center. (2010, October 7). Carberp Under the Hood of Carberp: Malware & Configuration Analysis. Retrieved July 15, 2020. |
| Trustwave BlackByte 2021 | Rodel Mendrez & Lloyd Macrohon. (2021, October 15). BlackByte Ransomware – Pt. 1 In-depth Analysis. Retrieved December 16, 2024. |
| Trustwave Cherry Picker | Merritt, E.. (2015, November 16). Shining the Spotlight on Cherry Picker PoS Malware. Retrieved April 20, 2016. |
| Trustwave GoldenSpy June 2020 | Trustwave SpiderLabs. (2020, June 25). The Golden Tax Department and Emergence of GoldenSpy Malware. Retrieved July 23, 2020. |
| Trustwave GoldenSpy2 June 2020 | Trustwave SpiderLabs. (2020, June 26). GoldenSpy: Chapter Two – The Uninstaller. Retrieved July 23, 2020. |
| Trustwave IIS Module 2013 | Grunzweig, J. (2013, December 9). The Curious Case of the Malicious IIS Module. Retrieved June 3, 2021. |
| Trustwave Pillowmint June 2020 | Trustwave SpiderLabs. (2020, June 22). Pillowmint: FIN7’s Monkey Thief . Retrieved July 27, 2020. |
| Trustwave SVG Smuggling 2025 | Bernard Bautista and Kevin Adriano. (2025, April 10). Pixel-Perfect Trap: The Surge of SVG-Borne Phishing Attacks. Retrieved April 14, 2025. |
| Tsunami | Claud Xiao and Cong Zheng. (2017, April 6). New IoT/Linux Malware Targets DVRs, Forms Botnet. Retrieved December 17, 2020. |
| Tweet Registry Perms Weakness | @r0wdy_. (2017, November 30). Service Recovery Parameters. Retrieved September 12, 2024. |
| Twilio SMS Pumping | Twilio. (2024, April 10). What Is SMS Pumping Fraud and How to Stop It. Retrieved September 25, 2024. |
| Twilio SMS Pumping Fraud | Twilio. (n.d.). What is SMS Pumping Fraud?. Retrieved September 25, 2024. |
| Twitter CMSTP Jan 2018 | Tyrer, N. (2018, January 30). CMSTP.exe - remote .sct execution applocker bypass. Retrieved September 12, 2024. |
| Twitter CMSTP Usage Jan 2018 | Carr, N. (2018, January 31). Here is some early bad cmstp.exe... Retrieved September 12, 2024. |
| Twitter Cglyer Status Update APT3 eml | Glyer, C. (2018, April 14). @cglyer Status Update. Retrieved September 12, 2024. |
Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.