mirror of
https://github.com/S3N4T0R-0X0/APTs-Adversary-Simulation.git
synced 2026-08-04 09:41:40 +02:00
Update README.md
This commit is contained in:
@@ -110,3 +110,16 @@ Now I will use the terminal and start the execut the payload after I uploaded it
|
||||

|
||||
|
||||
## The fourth stage (Data Exfiltration) over Dropbox API C2 Channe
|
||||
|
||||

|
||||
|
||||
|
||||
The attackers used the Dropbox C2 (Command and Control) API as a means to establish a communication channel between their payload and the attacker's server. By using Dropbox as a C2 server, attackers can hide their malicious activities among the legitimate traffic to Dropbox, making it harder for security teams to detect the threat.
|
||||
First, we need to create a Dropbox account and activate its permissions, as shown in the following figure.
|
||||
|
||||

|
||||
|
||||
|
||||
After that, we will go to the settings menu to generate the access token for the Dropbox account, and this is what we will use in Dropbox C2.
|
||||
|
||||

|
||||
|
||||
Reference in New Issue
Block a user