Umbra Wiki defense defense/D3-IPCTA
Back to wiki

D3-IPCTA — IPC Traffic Analysis

provenance: imported · ATT&CK: T1197

D3-IPCTA: IPC Traffic Analysis

MITRE D3FEND countermeasure

What it does

Analyzing standard inter process communication (IPC) protocols to detect deviations from normal protocol activity.

Attacks this counters

The chain in this corpus runs CVE → CWE → CAPEC → ATT&CK technique, which ends at what an adversary does. This is the hop after: what stops it.

Source

Related

technique/T1197