mirror of
https://github.com/S3N4T0R-0X0/APTs-Adversary-Simulation.git
synced 2026-08-04 09:41:40 +02:00
Update README.md
This commit is contained in:
@@ -128,12 +128,17 @@ I have previously performed Data Exfiltration during an Gossamer-Bear-APT attack
|
|||||||
The attackers used the Google Drive C2 (Command and Control) API as a means to establish a communication channel between their payload and the attacker's server, By using Google Drive as a C2 server, attackers can hide their malicious activities among the legitimate traffic to OneDrive, making it harder for security teams to detect the threat. First i need to create a google Drive account, as shown in the following figure
|
The attackers used the Google Drive C2 (Command and Control) API as a means to establish a communication channel between their payload and the attacker's server, By using Google Drive as a C2 server, attackers can hide their malicious activities among the legitimate traffic to OneDrive, making it harder for security teams to detect the threat. First i need to create a google Drive account, as shown in the following figure
|
||||||
|
|
||||||
1.Log into the Google Cloud Platform
|
1.Log into the Google Cloud Platform
|
||||||
|
|
||||||
2.Create a project in Google Cloud Platform dashboard
|
2.Create a project in Google Cloud Platform dashboard
|
||||||
|
|
||||||
3.Enable Google Drive API
|
3.Enable Google Drive API
|
||||||
|
|
||||||
4.Create a Google Drive API key
|
4.Create a Google Drive API key
|
||||||
|
|
||||||
|
|
||||||

|

|
||||||
|
|
||||||
|
|
||||||
I used the GoogleDrive C2 (Command and Control) API as a means to establish a communication channel between the payload and the attacker's server, By using GoogleDrive as a C2 server, i can hide the malicious activities among the legitimate traffic to GoogleDrive, making it harder for security teams to detect the threat.
|
I used the GoogleDrive C2 (Command and Control) API as a means to establish a communication channel between the payload and the attacker's server, By using GoogleDrive as a C2 server, i can hide the malicious activities among the legitimate traffic to GoogleDrive, making it harder for security teams to detect the threat.
|
||||||

|

|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user