File Operations
Last updated
Was this helpful?
Last updated
Was this helpful?
Here, we will show commonly used tools used by "Living Off the Land" techniques about file operations including download, upload, and encoding. This techniques are covered by the
Certutil is a Windows built-in utility for handling certification services. It is used to dump and display Certification Authority (CA) configuration information and other CA components. However, people found that certutil.exe could transfer and encode files unrelated to certification services.
The MITRE ATT&CK framework identifies this techniques as and
Note that other tools can be used for file operations. We suggest visiting the project to check them out.