Attack Ent T1564 014 Extended Attributes

Analyze MITRE ATT&CK T1564.014 Extended Attributes in the enterprise matrix. Use for TTP triage, detection engineering, hunting, defensive emulation planning, mitigations, incident response mapping, ATT&CK coverage, or questions mentioning T1564.014, Extended Attributes, or enterprise ATT&CK. Adversaries may abuse extended attributes (xattrs) on macOS and Linux to hide their malicious data in order to evade detection.

santosomar Updated

File contents

santosomar/mitre-attack-agent-skills/tree/main/enterprise/attack-ent-t1564-014-extended-attributes commit 2fd32d6571

Frequently asked questions

npx skillmds@latest add santosomar/attack-ent-t1564-014-extended-attributes