Can we C2? Yes we can!
ID: 068f5ddf-714b-5bda-ba5e-f4a9774b4814
STIX ID: report--068f5ddf-714b-5bda-ba5e-f4a9774b4814
Feed Name: Black Hills Infosec Blog
A blog post highlights the growing tactic of abusing legitimate web services (e.g., Twitter, Tumblr, Dropbox, SoundCloud, Salesforce, Google Docs) for command-and-control and data exfiltration, and introduces the open-source tool “sneaky-creeper” for emulating these communications, including a brief usage example. It serves as a resource for defenders and red teams to understand and test such TTPs rather than detailing any specific incident, malware family, or breach.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
