Machine Generated Beacon

Description

Triggered by devices that have recurring machine generated traffic. Looking at both web and network traffic.

Content Mapping

This content is not mapped to any local saved search. Add mapping


Use Case

Advanced Threat Detection

Category

Command and Control, Endpoint Compromise

Alert Volume

High

Journey

Stage 6

MITRE ATT&CK Tactics

Command and Control

MITRE ATT&CK Techniques

Custom Command and Control Protocol
Application Layer Protocol
Non-Application Layer Protocol

MITRE Threat Groups

APT29
APT3
APT32
APT37
Dragonfly 2.0
FIN6
Magic Hound
OilRig
PLATINUM
Rocke

Data Sources

Network Communication