FĂ©lix Brezo · @febrezo
156 followers · 213 posts · Server mastodon.social

From a perspective, the would be:

- .003: Command and Scripting Interpreter: Unix Shell. SHC payloads to be run still need a shell to be identified in the system and that the code inside the payload is, in fact, a shell script.
- .002: Obfuscated Files or Information: Software Packed with .
- : Debugger Evasion by using SHC with '-r'.
- : Ingress Tool Transfer by downloading payloads from Github.
- : Resource Hijacking with .

#threatintelligence #ttps #t1059 #t1027 #shc #t1622 #t1105 #t1496 #xmrig

Last updated 2 years ago