Ciberseguridad desde Málaga · Redes, anzuelos y amenazas

← Amenazas
Técnica MITRE ATT&CK · stealth

T1027.002 Software Packing

Subtécnica de T1027 Obfuscated Files or Information

Adversaries may perform software packing or virtual machine software protection to conceal their code. Software packing is a method of compressing or encrypting an executable. Packing an executable changes the file signature in an attempt to avoid signature-based detection. Most decompression techniques decompress the executable code in memory. Virtual machine software protection translates an…

Ficha en MITRE ATT&CK ↗

Quién la usa · con noticias en Jábega

Reglas Sigma para cazarla

SigmaHQ no tiene reglas para esta técnica.

Reglas de SigmaHQ · Detection Rule License 1.1. Técnica de MITRE ATT&CK®.