Tag
medium
advisory
Detection of Suspicious Artifacts and Tools via File Names
1 rule 1 TTPThis brief documents patterns in file naming conventions frequently associated with attacker toolkits, proof-of-concept exploits, and red team frameworks.
detection
offensive-tooling
monitoring
1r
1t
high
advisory
Detection of CrackMapExec Post-Exploitation Execution Patterns
1 rule 3 TTPsDetection engineering brief covering common command-line execution patterns generated by the CrackMapExec (CME) post-exploitation framework during lateral movement and command execution.
lateral-movement
post-exploitation
crackmapexec
offensive-tooling
1r
3t