Python
Adversaries may abuse Python commands and scripts for execution. Python is a very popular scripting/programming language, with capabilities to perform many functions. Python can be executed interactively from the command-line (via the <code>python.exe</code> interpreter) or via scripts (.py) that can be written and distributed to different systems. Python code can also be compiled into binary executables.(Citation: Zscaler APT31 Covid-19 October 2020) Python comes with many built-in packages to...
BY SOURCE
PROCEDURES (32)
Auto-extracted: 3 detections for inject
Auto-extracted: 3 detections for c2
Auto-extracted: 2 detections for http
Auto-extracted: 2 detections for obfuscat
Auto-extracted: 2 detections for child process
Auto-extracted: 2 detections for general monitoring
Auto-extracted: 2 detections for script execution monitoring
Auto-extracted: 2 detections for persist
Auto-extracted: 2 detections for base64
Auto-extracted: 1 detections for suspicious
Auto-extracted: 1 detections for command and control
Auto-extracted: 1 detections for lateral
Auto-extracted: 1 detections for download
Auto-extracted: 1 detections for download
Auto-extracted: 1 detections for container
Auto-extracted: 1 detections for lateral
Auto-extracted: 1 detections for remote
Auto-extracted: 1 detections for child process
Auto-extracted: 1 detections for unusual
Auto-extracted: 1 detections for unusual
Auto-extracted: 1 detections for unusual
Auto-extracted: 1 detections for inject
Auto-extracted: 1 detections for exfiltrat
Auto-extracted: 1 detections for lateral
Auto-extracted: 1 detections for download
Auto-extracted: 1 detections for privilege
Auto-extracted: 1 detections for container
Auto-extracted: 1 detections for suspicious
Auto-extracted: 1 detections for base64
Auto-extracted: 1 detections for inject
Auto-extracted: 1 detections for privilege
Auto-extracted: 1 detections for remote