Clankerusecase
MITRE ATT&CK detection coverage
← Back to main site
Home/ MITRE Matrix/ Discovery/ T1046

T1046Network Service Discovery

T1046 — Network Service Discovery is a MITRE ATT&CK technique in the Discovery tactic. Clankerusecase tracks 13 detection use cases covering it and 3 threat-intel articles citing it.

Discovery
View on the matrix → Filter Detection Library MITRE official spec ↗
13Use cases
3Articles
0Sub-techniques
1Tactic

Use cases covering this technique (13)

Cisco IOS XE Remote Access Probe Burst ESCU actions · hunting P Kubernetes Access Scanning ESCU actions · hunting P Kubernetes Scanning by Unauthenticated IP Address ESCU actions · hunting P Advanced IP or Port Scanner Execution ESCU actions · hunting P Windows PsTools Recon Usage ESCU actions · hunting P Cisco Secure Firewall - Blocked Connection ESCU actions · hunting P Cisco Secure Firewall - Repeated Blocked Connections ESCU actions · hunting P Internal Horizontal Port Scan ESCU actions · alerting P Internal Horizontal Port Scan NMAP Top 20 ESCU actions · alerting P Internal Vertical Port Scan ESCU actions · alerting P Internal Vulnerability Scan ESCU actions · alerting P [LLM] JDY-style outbound recon scanning originating from internal IoT / network appliances Bespoke recon · hunting DSPDDCS [LLM] Container-to-container horizontal scan — Dero miner self-propagation Bespoke actions · alerting DSPDDCS

Articles citing this technique (3)