ATT&CK: TA0003

Long story short, Persistence

December 4, 2023
Shanna Daly
Forensics, Incident Response
ATT&CK: TA0003, Persistence, Defence evasion, webshells, malware, ATT&CK: T1574, ATT&CK: T1505, ATT&CK: T1021

In this post I am pulling parts out of a talk that I did called “Long story short”. I delivered variations of this talk online for NZITF and the ICSL MRE webinar series in 2022 and also in person at CRESTCon 2022 in Canberra. I found these interesting at the time as they were novel to us (back then), and that a lack of detection and response capabilities enabled this threat actor to carry out their activities unhindered. ...