Created using the ATT&CK Planner

ATT&CK Planner

Adversary Threat Emulation Plan

Threat Actor: APT28

Desired Impact: Data Exfiltration

Emulation Plan

Adversary Emulation Plan for APT28 - Data Exfiltration Threat Actor

Desired Impact: Data Exfiltration

TA0010: Exfiltration

Techniques and MITRE ATT&CK Tactics:

  1. Credentials

    [TA0006: Credential Access](https://cmndcntrl.notion.site/TA0006-Credential-Access-ba289320934d4815a451e63405d41888)

  2. Process Discovery

  3. Network Sniffing

  4. PowerShell

  5. Email Accounts

  6. Drive-by Compromise

Mitigation Strategies:

  1. Security Awareness Training:
  2. Access Controls:
  3. Network Security Measures: