Detecttechnique

D3-IAAIdentifier Activity Analysis

Identifier Activity Analysis

Definition

Taking known malicious identifiers and determining if they are present in a system.

Defends against4

TypeTargetConfidenceTier
SubTechniqueSpearphishing Linkt1566.002100%live
SubTechniqueSpearphishing via Servicet1566.003100%live
TechniqueDrive-by Compromiset1189100%live
SubTechniqueMalicious Linkt1204.001100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Defence
Identifier Reputation Analysis
Defence
Administrative Network Activity Analysis
Defence
IP Reputation Analysis
Defence
System Call Analysis
Defence
IPC Traffic Analysis
Defence
Connection Attempt Analysis
Sourced from MITRE D3FEND ontology. Curated by Adam Lundqvist, SQUR.