detection-hackathon-apt29
detection-hackathon-apt29 copied to clipboard
13.C) System Owner/User Discovery
Description
The attacker performs local enumeration using various Windows API calls, specifically gathering current user context (T1033)