2022-02-20 15:37:38 -05:00
{
"type" : "bundle" ,
2023-09-28 17:38:48 -04:00
"id" : "bundle--5b5d8638-53f8-4ad4-91f5-962233159bb4" ,
2022-02-20 15:37:38 -05:00
"objects" : [
{
"type" : "attack-pattern" ,
"spec_version" : "2.1" ,
2022-07-03 19:59:09 -04:00
"id" : "attack-pattern--9b3efc53-3a9e-45e7-8a26-dd2c4a305fd2" ,
"created_by_ref" : "identity--f1a0f560-2d9e-4c5d-bf47-7e96e805de82" ,
2023-09-28 17:38:48 -04:00
"created" : "2023-09-28T21:25:13.252368Z" ,
"modified" : "2023-09-28T21:25:13.252368Z" ,
2023-09-25 12:46:26 -04:00
"name" : "Spoof/Parody Account/Site" ,
"description" : "An influence operation may prepare assets impersonating legitimate entities to further conceal its network identity and add a layer of legitimacy to its operation content. Users will more likely believe and less likely fact-check news from recognisable sources rather than unknown sites. Legitimate entities may include authentic news outlets, public figures, organisations, or state entities." ,
2022-02-20 15:37:38 -05:00
"kill_chain_phases" : [
{
"kill_chain_name" : "mitre-attack" ,
2022-06-30 23:30:18 -04:00
"phase_name" : "establish-legitimacy"
2022-02-20 15:37:38 -05:00
}
] ,
"external_references" : [
{
2022-07-03 19:59:09 -04:00
"source_name" : "mitre-attack" ,
2023-09-25 12:46:26 -04:00
"url" : "https://github.com/DISARMFoundation/DISARMframeworks/blob/main/generated_pages/techniques/T0099.002.md" ,
2022-07-02 00:28:52 -04:00
"external_id" : "T0099.002"
2022-02-20 15:37:38 -05:00
}
] ,
"object_marking_refs" : [
2022-07-03 19:59:09 -04:00
"marking-definition--f79f25d2-8b96-4580-b169-eb7b613a7c31"
2022-02-20 15:37:38 -05:00
] ,
2022-07-02 00:28:52 -04:00
"x_mitre_is_subtechnique" : true ,
2022-02-20 15:37:38 -05:00
"x_mitre_platforms" : [
"Windows" ,
"Linux" ,
"Mac"
] ,
2022-07-03 19:59:09 -04:00
"x_mitre_version" : "2.1"
2022-02-20 15:37:38 -05:00
}
]
}