Skip to content

Hide Navigation Hide TOC

Potential File Extension Spoofing Using Right-to-Left Override (979baf41-ca44-4540-9d0c-4fcef3b5a3a4)

Detects suspicious filenames that contain a right-to-left override character and a potentially spoofed file extensions.

Cluster A Galaxy A Cluster B Galaxy B Level
Right-to-Left Override - T1036.002 (77eae145-55db-4519-8ae5-77b0c7215d69) Attack Pattern Potential File Extension Spoofing Using Right-to-Left Override (979baf41-ca44-4540-9d0c-4fcef3b5a3a4) Sigma-Rules 1
Right-to-Left Override - T1036.002 (77eae145-55db-4519-8ae5-77b0c7215d69) Attack Pattern Masquerading - T1036 (42e8de7b-37b2-4258-905a-6897815e58e0) Attack Pattern 2