elastic / elastic/SWAT

[Feature Request] Add Python module for detecting T1087.003

Open
#13 0 comments 0 reactions 0 assignees View on GitHub
API: Admin API: Gmail enhancement Subtechnique: 003 Tactic: Discovery Technique: T1087
Dominant language
Python
Stars
170
Forks
8
PR merge metrics
No merged PRs in 30d

Description

## 🐍 Python Module for MITRE ATT&CK Technique Detection

**Technique Name:** Account Discovery: Email Account

**Technique ID:** T1087.003

**Technique Description:** Adversaries may attempt to get a listing of email addresses and accounts. This internal identity enumeration can then be used to target further post-exploitation collection against accounts with placement and access to desired information.

Please ensure the following tasks are completed before submitting your feature request:

- [x] This issue is for a specific MITRE ATT&CK technique detection
- [x] The technique name and ID are clearly specified
- [ ] The problem and desired solution are clearly described
- [ ] Any necessary alternatives or additional context have been provided

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.