Detecttechnique
D3-RTSDRemote Terminal Session Detection
Remote Terminal Session Detection
Definition
Detection of an unauthorized remote live terminal console session by examining network traffic to a network host.
Defends against72
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Technique | Exploitation of Remote Servicest1210 | 100% | live |
| SubTechnique | SSHt1021.004 | 100% | live |
| SubTechnique | Spearphishing Attachmentt1566.001 | 100% | live |
| SubTechnique | Transmitted Data Manipulationt1565.002 | 100% | live |
| SubTechnique | File Transfer Protocolst1071.002 | 100% | live |
| Technique | Drive-by Compromiset1189 | 100% | live |
| SubTechnique | Domain Frontingt1090.004 | 100% | live |
| Technique | Remote Servicest1021 | 100% | live |
| SubTechnique | Internal Proxyt1090.001 | 100% | live |
| SubTechnique | CMSTPt1218.003 | 100% | live |
| Technique | Rogue Domain Controllert1207 | 100% | live |
| Technique | Multi-Stage Channelst1104 | 100% | live |
| Technique | Windows Management Instrumentationt1047 | 100% | live |
| SubTechnique | Multi-hop Proxyt1090.003 | 100% | live |
| Technique | Exploit Public-Facing Applicationt1190 | 100% | live |
| SubTechnique | Spearphishing Linkt1566.002 | 100% | live |
| SubTechnique | TFTP Boott1542.005 | 100% | live |
| SubTechnique | External Proxyt1090.002 | 100% | live |
| Technique | Exfiltration Over Web Servicet1567 | 100% | live |
| SubTechnique | Malicious Linkt1204.001 | 100% | live |
| Technique | Data Obfuscationt1001 | 100% | live |
| Technique | Exfiltration Over Other Network Mediumt1011 | 100% | live |
| SubTechnique | Web Protocolst1071.001 | 100% | live |
| Technique | Adversary-in-the-Middlet1557 | 100% | live |
| Technique | Scheduled Transfert1029 | 100% | live |
| SubTechnique | Mail Protocolst1071.003 | 100% | live |
| SubTechnique | Credential Stuffingt1110.004 | 100% | live |
| SubTechnique | Exfiltration Over Unencrypted Non-C2 Protocolt1048.003 | 100% | live |
| SubTechnique | Accessibility Featurest1546.008 | 100% | live |
| Technique | Lateral Tool Transfert1570 | 100% | live |
Showing top 30 of 72 by confidence. Click any target to see the full neighbourhood.
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.