TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Hacker News (front page)

Diskless Linux boot using ZFS, iSCSI and PXE

2 hours ago · Read original ↗

ATT&CK techniques detected

3 predictions
T1113Screen Capture
99%
"............. [ portals : 1 ] o - 0. 0. 0. 0 : 3260.............................................................. [ ok ] / iscsi / iqn. 20... n - disk - 12700k > cd / / > exit global pref auto _ save _ on _ exit = true last 10 configs saved in / etc / rtslib - fb - target / backu…"
T1542.001System Firmware
75%
"##q. conf. add # bios clients dhcp - boot = tag :! ipxe, ipxe / netboot. xyz - undionly. kpxe,, 192. 168. 50. 167 # uefi x86 - 64 clients dhcp - match = set : efi - x86 _ 64, option : client - arch, 7 dhcp - boot = tag : efi - x86 _ 64, ipxe / netboot. xyz - snp. efi,, 192. 168. …"
T1048.003Exfiltration Over Unencrypted Non-C2 Protocol
31%
"##er - amd64 / current / images / netboot / gtk / debian - installer / amd64 / linux configure tftp # configure in / etc / default / tftpd - hpa tftp _ username = " tftp " tftp _ directory = " / srv / tftp " tftp _ address = " : 69 " tftp _ options = " - - secure " copy the netbo…"

Summary

Comments