Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Detection Strategies DET0868 — Detection of Wordlist Scanning
DET0868

Detection of Wordlist Scanning

1 analytic(s) · 1 technique(s) detected

Analytics

1
AN2000 Analytic 2000
PRE

Monitor for suspicious network traffic that could be indicative of scanning, such as large quantities originating from a single source (especially if the source is known to be associated with an adversary/botnet).

Network Traffic None

Detected Techniques

1

Details

MITRE ID
DET0868
STIX ID
x-mitre-detection-strategy--95d3b171-2fc3-4e58-a5c9-4d98c3691c88
Analytics
1
Techniques Detected
1
By Tactic
Reconnaissance
1
Leaving Threaticon

This link opens an external site that isn't part of the platform.