Threat Intelligence Exfiltration and Rule Enumeration - ATR-2026-00090 (f7e5b5a3-d39c-58c6-af5e-e32a721a6995)
Detects attempts to extract threat intelligence, enumerate detection rules, or exfiltrate security configuration details from the agent. Attackers attempt to learn the detection ruleset to craft evasion payloads, or extract security audit logic to reverse-engineer defense mechanisms.