T1567.004 · Exfiltration Over Webhook
Sub-technique of T1567 · Exfiltration Over Web Service.
Adversaries may exfiltrate data to a webhook endpoint rather than over their primary command and control channel. Webhooks are simple mechanisms for allowing a server to push data over HTTP/S to a client without the need for the client to continuously poll the server.(Citation: RedHat Webhooks) Many...
How to detect & mitigate it
Related techniques
Exfiltration Over Web Service T1029
Scheduled Transfer T1011
Exfiltration Over Other Network Medium T1011.001
Exfiltration Over Bluetooth T1020
Automated Exfiltration T1048.001
Exfiltration Over Symmetric Encrypted Non-C2 Protocol T1020.001
Traffic Duplication T1567.001
Exfiltration to Code Repository
Source: MITRE ATT&CK®. ATT&CK is a registered trademark of The MITRE Corporation. Content for educational purposes.