TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Academic Research: A Survey of Email Attacks

2017-10-31 · Read original ↗

ATT&CK techniques detected

3 predictions
T1586.002Email Accounts
85%
“tools to create fraudulent emails. attackers can spoof legitimate email addresses many ways. a common usage of fraudulent email is to lead the recipient of the email to click on a malicious link, execute a malicious file ( or macro ), follow fraudulent directions ( make a wire tr…”
T1573.002Asymmetric Cryptography
76%
“##forge that is advertised as a tool for pentesters. it is able to send emails to a single recipient or a list, it supports plain text / html email formats, and attachments. it also enables the sender to specify that replies go to a different email located in the header. comparis…”
T1071.003Mail Protocols
70%
“academic research : a survey of email attacks figure 1 : demonstration of a split - tunnel attack4 email retrieval attacks the two major protocols associated with email retrieval are post office protocol 3 ( pop3 ) and internet message access protocol ( imap ). both protocols con…”

Summary

Email has become such an ordinary part of our daily lives that we can forget how vulnerable it is.