Umbra Wiki defense defense/D3-BSE
Back to wiki

D3-BSE — Byte Sequence Emulation

provenance: imported

D3-BSE: Byte Sequence Emulation

MITRE D3FEND countermeasure

What it does

Analyzing sequences of bytes and determining if they likely represent malicious shellcode.

Attacks this counters

No ATT&CK technique in this corpus maps to this countermeasure. D3FEND may map it to techniques outside the Enterprise matrix, or to ones MITRE has since revoked — absence here is about this corpus, not about the countermeasure.

Source