68 results found (page 1 of 5)
https://attack.mitre.org/versions/v17/techniques/T1048/003

…message via SMTP containing information about newly infected victims. [24] [25] G0049 OilRig OilRig has exfiltrated data via Microsoft Exchange and over FTP separately from its primary C2 channel over DNS. [26] [27] S0428 PoetRAT PoetRAT has used ftp for exfiltration. [28] S1040 …