TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Trickbot Expands Global Targets Beyond Banks and Payment Processors to CRMs

2017-06-15 · Read original ↗

ATT&CK techniques detected

1 predictions
T1071.001Web Protocols
79%
"services. all of them used port 443 / https as a connection method from the infected machine back to the c & c host, a method commonly used by malware authors to evade detection from network security devices that don ’ t inspect encrypted traffic. samples analyzed the following m…"

Summary

TrickBot shows no signs of slowing down as new targets are added and command and control servers hide within web hosting providers’ networks.