Clankerusecase
MITRE ATT&CK detection coverage
← Back to main site
Home/ MITRE Matrix/ Discovery/ T1135

T1135Network Share Discovery

T1135 — Network Share Discovery is a MITRE ATT&CK technique in the Discovery tactic. Clankerusecase tracks 10 detection use cases covering it and 1 threat-intel article citing it.

Discovery
View on the matrix → Filter Detection Library MITRE official spec ↗
10Use cases
1Articles
0Sub-techniques
1Tactic

Use cases covering this technique (10)

Advanced IP or Port Scanner Execution ESCU actions · hunting P MacOS Network Share Discovery ESCU actions · hunting P Network Share Discovery Via Dir Command ESCU actions · hunting P Windows Administrative Shares Accessed On Multiple Hosts ESCU actions · alerting P Windows File Share Discovery With Powerview ESCU actions · alerting P Windows Large Number of Computer Service Tickets Requested ESCU actions · hunting P Windows Network Share Interaction Via Net ESCU actions · hunting P Windows Special Privileged Logon On Multiple Hosts ESCU actions · alerting P Windows Network Share Interaction With Net ESCU actions · alerting P [LLM] Internal domain reconnaissance burst (net view/share/session, nltest, session enum) Bespoke recon · hunting DSPDDCS

Articles citing this technique (1)