Skip to content

Hide Navigation Hide TOC

Suspicious Network Communication With IPFS (eb6c2004-1cef-427f-8885-9042974e5eb6)

Detects connections to interplanetary file system (IPFS) containing a user's email address which mirrors behaviours observed in recent phishing campaigns leveraging IPFS to host credential harvesting webpages.

Cluster A Galaxy A Cluster B Galaxy B Level
Input Capture - T1056 (bb5a00de-e086-4859-a231-fa793f6797e2) Attack Pattern Suspicious Network Communication With IPFS (eb6c2004-1cef-427f-8885-9042974e5eb6) Sigma-Rules 1