Potential RDP Tunneling Via Plink (f38ce0b9-5e97-4b47-a211-7dc8d8b871da)
Execution of plink to perform data exfiltration and tunneling
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Potential RDP Tunneling Via Plink (f38ce0b9-5e97-4b47-a211-7dc8d8b871da) | Sigma-Rules | Protocol Tunneling - T1572 (4fe28b27-b13c-453e-a386-c2ef362a573b) | Attack Pattern | 1 |