T1567Exfiltration Over Web Service
T1567 — Exfiltration Over Web Service is a MITRE ATT&CK technique in the Exfiltration tactic. Clankerusecase tracks 68 detection use cases covering it and 46 threat-intel articles citing it.
Exfiltration
68Use cases
46Articles
4Sub-techniques
1Tactic
Sub-techniques (4)
Use cases covering this technique (68)
Application data exfiltration successful [WEEKLY] Install-Triggered Registry Publish or Git Push (Supply-Chain Worm Self-Propagation) [WEEKLY] Non-Browser Process Reads Browser Credential / Cookie SQLite Then Egresses to Public Destination Within 10 Minutes [WEEKLY] npm Install-Time Lifecycle Hook Triggers Outbound Egress to Newly-Seen Domain (Shai-Hulud/Miasma/IronWorm pattern) [WEEKLY] Package-manager child process credential fan-out with public egress (Mini Shai-Hulud / TeamPCP worm chain) [WEEKLY] Package-Manager Install -> Interpreter Child -> Non-Registry Egress Within 5 Minutes [WEEKLY] Package-manager install-time interpreter spawn with credential-file read and outbound egress within 120s [WEEKLY] Supply-chain repo credential theft → outbound exfil to attacker infra O365 DLP Rule Triggered O365 Email Access By Security Administrator O365 Exfiltration via File Access O365 Exfiltration via File Download O365 Exfiltration via File Sync Download Linux Gdrive Binary Activity LOLBAS With Network Traffic Windows Gdrive Binary Activity Cisco TFTP Server Configuration for Data Exfiltration High Volume of Bytes Out to Url [LLM] Shai-Hulud worm exfil — outbound to webhook.site/bb8ca5f6 from developer or CI process [LLM] Agentjacking C2/exfiltration to advisory-tracker.com (Tenet Sentry-MCP attack) [LLM] AI-agent-driven mailbox auto-forwards messages to first-time-seen external recipient [LLM] Bun runtime egress to npm/PyPI publish endpoints or attacker-controlled GitHub repos [LLM] npm/node install-time process beaconing to webhook.site, sfrclak.com or 142.11.206.73 [LLM] build.rs invoking curl POST to Sentry envelope endpoint with code diff payload [LLM] Network egress to onering Sentry exfil ingest domain or project envelope path [LLM] WinSCP or Rclone exfiltration from end-user workstations [LLM] Outbound mail to or domain lookup of business-data-leaks[.]com (UNC3753 extortion infrastructure) [LLM] Smart-TV / mobile device acting as residential proxy exit node (high-fan-out HTTPS to unrelated public destinations) [LLM] GitHub Actions runner: node from Claude Code Action egresses to non-Anthropic/non-GitHub endpoint [LLM] Mini Shai-Hulud npm worm exfiltration to t.m-kosche.com OpenTelemetry endpoint [LLM] Mini Shai-Hulud npm worm exfil to filev2.getsession.org [LLM] postmark-mcp BCC exfil to giftshop.club [LLM] DNS/HTTPS exfil to sentry.anyclaw.store (Codex token C2 masquerading as Sentry) [LLM] Mini Shai-Hulud npm worm C2/exfil egress (masscan.cloud, git-tanstack.com, getsession.org) [LLM] Megalodon CI/CD exfil: outbound HTTPS to C2 216.126.225.129:8443 [LLM] DNS / Network egress to TeamPCP Nx Console C2 domain check.git-service.com [LLM] Outbound C2 to t.m-kosche.com from CI/CD runner or any endpoint [LLM] Mini Shai-Hulud GitHub dead-drop exfiltration via python-requests/2.31.0 [LLM] Arcane backend host outbound Git/HTTPS to non-allowlisted host on port 22/443 (CVE-2026-45625 credential sink) [LLM] Mini Shai-Hulud npm Worm C2 callback to Session Protocol CDN and masscan.cloud [LLM] Shai-Hulud style repository poisoning — .claude/router_runtime.js drop [LLM] Mini Shai-Hulud 'OhNoWhatsGoingOnWithGitHub' dead-drop keyword in outbound URL [LLM] Svix Ingest webhook exfiltration relay (src_3387PLMB2uhXOBe3Q8sHu) [LLM] Mini Shai-Hulud post-compromise persistence artifacts in .claude/, .vscode/, .github/workflows/ [LLM] Exfil to skyhanni.cloud C2 with X-Rise-To-The-Trinny header [LLM] Suspicious draft email manipulation against barrantaya.1010@outlook.com (BoxOfFriends Graph API C2) [LLM] Shai-Hulud preinstall: node/npm spawning git/curl/gh pushing to attacker repo or GitHub API [LLM] hackerbot-claw payload host: DNS/HTTP egress to hackmoltrepeat.com (C2 + exfil) [LLM] hackerbot-claw token exfiltration: curl POST with GITHUB_TOKEN to recv.hackmoltrepeat.com [LLM] TeamPCP tpcp.tar.gz exfil POST signature on egress proxy / WAF [LLM] Trivy supply-chain C2 beacon to typosquat domain scan.aquasecurtiy.org [LLM] DNS tunneling exfiltration pattern to *.t.opentensor-cdn.com (hex chunk/index/total/session) [LLM] C2 beaconing to Vercel-hosted Cloudflare-impersonating domains (cloudflareguard / cloudflareinsights) [LLM] Outbound traffic to *.oastify.com (BurpSuite Collaborator) from corporate endpoint [LLM] CI runner anomalous outbound to raw.githubusercontent.com / gist.githubusercontent.com [LLM] Egress to Qix npm phishing/exfil infrastructure (npmjs.help, publicvm.com, BunnyCDN buckets) [LLM] APT28 MacroMaze: Edge launched off-screen or headless to webhook.site by non-browser parent [LLM] GhostChat C2 beacon URL pattern: hitpak.org/page.php?tynor=<host>sss<user> [LLM] Shai-Hulud 3.0 'Goldox-T3chs' GitHub exfiltration marker observed [LLM] Outbound exfiltration to webhook.site from npm / node / bun process tree [LLM] Outbound exfiltration to Shai-Hulud webhook.site/bb8ca5f6 C2 endpoint [LLM] Outbound email BCC'd to giftshop.club exfil domain (postmark-mcp backdoor) [LLM] DNS or HTTP egress to giftshop.club exfil domain [LLM] GhostAction curl/wget POST of CI/CD secret token to Plesk endpoint [LLM] Shai-Hulud worm C2 exfiltration to webhook.site UUID bb8ca5f6 [LLM] Egress to websocket-api2.publicvm.com (Qix campaign credential exfil C2) [LLM] CI/CD Linux build host outbound to gist.githubusercontent.com (tj-actions IOC pattern) [LLM] CI/CD runner outbound to gist.githubusercontent.com (tj-actions CVE-2025-30066 staging fetch)Articles citing this technique (46)
high Miasma and Hades Are Spreading Now: Detect Them on Developer Machines with Suspicious Files art-45
crit [GHSA / CRITICAL] GHSA-jpvj-wpmj-h7rv: Supply chain compromise via malicious @cap-js/openapi art-123
high GitHub breached via a malicious VS Code extension: why developer devices are the real target art-238
high "A Mini Shai-Hulud Has Appeared": Bun-Based Stealer Hits SAP @cap-js and mbt npm Packages art-348
high Malicious Release of elementary-data PyPI Package Steals Cloud Credentials from Data Engineers art-352
crit Malicious Polymarket Bot Hides in Hijacked dev-protocol GitHub Org and Steals Wallet Keys art-433