Clankerusecase
MITRE ATT&CK detection coverage
← Back to main site
Home/ MITRE Matrix/ Impact/ T1499

T1499Endpoint Denial of Service

T1499 — Endpoint Denial of Service is a MITRE ATT&CK technique in the Impact tactic. Clankerusecase tracks 13 detection use cases covering it and 3 threat-intel articles citing it.

Impact
View on the matrix → Filter Detection Library MITRE official spec ↗
13Use cases
3Articles
4Sub-techniques
1Tactic

Sub-techniques (4)

Use cases covering this technique (13)

ESXi Bulk VM Termination ESCU actions · alerting P Ollama Possible Memory Exhaustion Resource Abuse ESCU actions · hunting P Linux Magic SysRq Key Abuse ESCU actions · alerting P Cisco Secure Firewall - Static Tundra Smart Install Abuse ESCU actions · alerting P Splunk DoS via POST Request Datamodel Endpoint ESCU actions · hunting P Splunk Endpoint Denial of Service DoS Zip Bomb ESCU actions · alerting P Splunk ES DoS Investigations Manager via Investigation Creation ESCU actions · alerting P Splunk ES DoS Through Investigation Attachments ESCU actions · alerting P Splunk Improperly Formatted Parameter Crashes splunkd ESCU actions · alerting P Splunk Unauthenticated DoS via Null Pointer References ESCU actions · hunting P [LLM] Cilium Envoy admin socket abuse: destructive DoS via /quitquitquit /drain_listeners (CVE-2026-49445) Bespoke actions · alerting DSΣPDDCS [LLM] CVE-2024-24762 ReDoS exploitation: overlong Content-Type header / stalled POST to FastAPI form endpoint Bespoke actions · hunting SP [LLM] Install/resolution of sabotaged npm packages colors@1.4.1/1.4.2/liberty-2 or faker@6.6.6 Bespoke delivery · alerting DSΣPDDCS

Articles citing this technique (3)