S0552Windows

S0552AdFind

Platforms
1
ATT&CK
14.1
References
4

Description

[AdFind](https://attack.mitre.org/software/S0552) is a free command-line query tool that can be used for gathering information from Active Directory.(Citation: Red Canary Hospital Thwarted Ryuk October 2020)(Citation: FireEye FIN6 Apr 2019)(Citation: FireEye Ryuk and Trickbot January 2019) Documented platforms: Windows. Catalogued in ATT&CK 14.1. 4 references curated.

Platforms· 1

Windows

References

  1. https://attack.mitre.org/software/S0552
  2. https://redcanary.com/blog/how-one-hospital-thwarted-a-ryuk-ransomware-outbreak/
  3. https://www.fireeye.com/blog/threat-research/2019/01/a-nasty-trick-from-credential-theft-malware-to-business-disruption.html
  4. https://www.fireeye.com/blog/threat-research/2019/04/pick-six-intercepting-a-fin6-intrusion.html

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
BloodHound
Software
dsquery
Software
AADInternals
Software
Tasklist
Software
Nltest
LOLbin
find
Sourced from MITRE ATT&CK Enterprise 14.1. Curated by Adam Lundqvist, SQUR.