OTRF/detection-hackathon-apt29

13.C) System Owner/User Discovery

Cyb3rWard0g opened this issue · 0 comments

Description

The attacker performs local enumeration using various Windows API calls, specifically gathering current user context (T1033)