Isolatesubtechnique

D3-FISVFile Internal Structure Verification

Definition

The process of checking specific static values within a file, such as file signatures or magic numbers, to ensure they match the expected values defined by the file format specification.

Defends against99

TypeTargetConfidenceTier
TechniqueArchive Collected Datat1560100%live
SubTechniqueVDSO Hijackingt1055.014100%live
SubTechniqueImpair Command History Loggingt1562.003100%live
SubTechniqueCredentials In Filest1552.001100%live
SubTechniqueTrapt1546.005100%live
SubTechniqueUnix Shell Configuration Modificationt1546.004100%live
TechniqueSteal or Forge Authentication Certificatest1649100%live
SubTechniqueCompile After Deliveryt1027.004100%live
SubTechniqueLocal Email Collectiont1114.001100%live
TechniqueData Encrypted for Impactt1486100%live
TechniqueXSL Script Processingt1220100%live
SubTechniqueProc Filesystemt1003.007100%live
TechniqueRemote System Discoveryt1018100%live
SubTechniquePlist Modificationt1547.011100%live
SubTechniqueLogon Script (Windows)t1037.001100%live
SubTechniqueWeb Protocolst1071.001100%live
SubTechniqueSystemd Servicet1543.002100%live
TechniqueSystem Owner/User Discoveryt1033100%live
TechniqueCredentials from Password Storest1555100%live
SubTechniqueDynamic Linker Hijackingt1574.006100%live
SubTechniquePowerShell Profilet1546.013100%live
SubTechniquePortable Executable Injectiont1055.002100%live
SubTechniqueMalicious Filet1204.002100%live
SubTechniqueLaunch Agentt1543.001100%live
SubTechniqueLaunch Daemont1543.004100%live
SubTechniqueThread Execution Hijackingt1055.003100%live
SubTechniqueLaunchdt1053.004100%live
SubTechniqueOffice Template Macrost1137.001100%live
SubTechniqueOutlook Formst1137.003100%live
SubTechniqueDylib Hijackingt1574.004100%live

Showing top 30 of 99 by confidence. Click any target to see the full neighbourhood.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Defence
File Metadata Value Verification
Defence
File Format Verification
Defence
File Metadata Consistency Validation
Defence
File Magic Byte Verification
Defence
File Integrity Monitoring
Defence
File Content Decompression Checking
Sourced from MITRE D3FEND ontology. Curated by Adam Lundqvist, SQUR.