Use of OpenConsole (814c95cc-8192-4378-a70a-f1aafd877af1)
Detects usage of OpenConsole binary as a LOLBIN to launch other binaries to bypass application Whitelisting
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Use of OpenConsole (814c95cc-8192-4378-a70a-f1aafd877af1) | Sigma-Rules | Command and Scripting Interpreter - T1059 (7385dfaf-6886-4229-9ecd-6fd678040830) | Attack Pattern | 1 |