Skip to content

Hide Navigation Hide TOC

Compress Data and Lock With Password for Exfiltration With WINZIP (e2e80da2-8c66-4e00-ae3c-2eebd29f6b6d)

An adversary may compress or encrypt data that is collected prior to exfiltration using 3rd party utilities

Cluster A Galaxy A Cluster B Galaxy B Level
Archive via Utility - T1560.001 (00f90846-cbd1-4fc5-9233-df5c2bf2a662) Attack Pattern Compress Data and Lock With Password for Exfiltration With WINZIP (e2e80da2-8c66-4e00-ae3c-2eebd29f6b6d) Sigma-Rules 1
Archive Collected Data - T1560 (53ac20cd-aca3-406e-9aa0-9fc7fdc60a5a) Attack Pattern Archive via Utility - T1560.001 (00f90846-cbd1-4fc5-9233-df5c2bf2a662) Attack Pattern 2