Using MITRE ATT&CK TTPs to detect LOLBins attacks
Details
- Introducing the commonly abused LOLBins.
- Identifying malicious activities using the MITRE ATT&CK TTPs.
- Detecting LOLBin attacks that:
- Bypass security defenses
- Bypass user access control
- And conduct other fileless attacks