T1020 - Automated Exfiltration

Tactics:
Exfiltration
Platforms:
Linux macOS Network Devices Windows
Detection:
Not specified
Description:
Adversaries may exfiltrate data, such as sensitive documents, through the use of automated processing after being gathered during Collection.(Citation: ESET Gamaredon June 2020)

When automated exfiltration is used, other exfiltration techniques likely apply as well to transfer the information out of the network, such as [Exfiltration Over C2 Channel](https://attack.mitre.org/techniques/T1041) and [Exfiltration Over Alternative Protocol](https://attack.mitre.org/techniques/T1048).
Sub-techniques (1)
ID ATT&CK Actions
T1020.001 Traffic Duplication