home.social

#t1059 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #t1059, aggregated by home.social.

  1. From a #ThreatIntelligence perspective, the #TTPs would be:

    - #T1059.003: Command and Scripting Interpreter: Unix Shell. SHC payloads to be run still need a shell to be identified in the system and that the code inside the payload is, in fact, a shell script.
    - #T1027.002: Obfuscated Files or Information: Software Packed with #SHC.
    - #T1622: Debugger Evasion by using SHC with '-r'.
    - #T1105: Ingress Tool Transfer by downloading payloads from Github.
    - #T1496: Resource Hijacking with #XMRig.