Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Detection Strategies DET0829 — Detection of Serverless
DET0829

Detection of Serverless

1 analytic(s) · 1 technique(s) detected

Analytics

1
AN1961 Analytic 1961
PRE

Once adversaries leverage serverless functions as infrastructure (ex: for command and control), it may be possible to look for unique characteristics associated with adversary software, if known.(Citation: ThreatConnect Infrastructure Dec 2020) Much of this activity will take place outside the visibility of the target organization, making detection of this behavior difficult. Detection efforts may be focused on related stages of the adversary lifecycle.

Internet Scan None

Detected Techniques

1

Resource Development (1)

Details

MITRE ID
DET0829
STIX ID
x-mitre-detection-strategy--9695c6af-f3cc-40fa-b3a1-351014c6282f
Analytics
1
Techniques Detected
1
By Tactic
Resource Development
1
Leaving Threaticon

This link opens an external site that isn't part of the platform.