T1052.001 - Exfiltration over USB

Sub-technique
Tattiche:
Exfiltration
Piattaforme:
Linux Windows macOS
Rilevamento:
Not specified
Description:
Adversaries may attempt to exfiltrate data over a USB connected physical device. In certain circumstances, such as an air-gapped network compromise, exfiltration could occur via a USB device introduced by a user. The USB device could be used as the final exfiltration point or to hop between otherwise disconnected systems.
Metadata
MITRE ID: T1052.001
STIX ID: attack-pattern--a3e1e6c5-9c74-...
Piattaforme: Linux, Windows, macOS
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00