T1011 – Exfiltration Over Bluetooth (CrowdStrike Detection)
CrowdStrike Alert Details Alert ID: CS-BLUETOOTH-EXFIL-1011-7842 Alert Time: 2024-03-02 09:30:15 EST Severity: HIGH (85/100) Source: CrowdStrike Falcon EDR Rule: “Bluetooth File Transfer Detected – Potential Data Exfiltration” MITRE ATT&CK: T1011 – Exfiltration Over Other Network Medium: Bluetooth Alert Details: Detection: Large file transfer over Bluetooth from corporate laptop Host: RND-WS-045 (Research & Development) User: alexchen@company.com … Read more