T1195.001 Compromise Software Dependencies and Development Tools
Subtécnica de T1195 Supply Chain Compromise
Adversaries may manipulate software dependencies and development tools prior to receipt by a final consumer for the purpose of data or system compromise. Applications often depend on external software to function properly. Popular open source projects that are used as dependencies in many applications, such as pip and NPM packages, may be targeted as a means to add malicious code to users of the…
Quién la usa · con noticias en Jábega
Reglas Sigma para cazarla
- Octopus Scanner Malwarehightest · windows
- Outdated Dependency Or Vulnerability Alert Disabledhightest · github
Reglas de SigmaHQ · Detection Rule License 1.1. Técnica de MITRE ATT&CK®.