{ "type": "bundle", "id": "bundle--a1ab6ca7-8c0e-4e6e-ada2-d5acbfb8f0ae", "objects": [ { "type": "attack-pattern", "spec_version": "2.1", "id": "attack-pattern--0c2c22ae-5115-4b91-9e0f-08259e6aad99", "created_by_ref": "identity--f1a0f560-2d9e-4c5d-bf47-7e96e805de82", "created": "2024-08-02T17:12:32.431925Z", "modified": "2024-08-02T17:12:32.431925Z", "name": "Persona Legitimacy Evidence", "description": "This Technique contains behaviours which might indicate whether a persona is legitimate, a fabrication, or a parody.

For example, the same persona being consistently presented across platforms is consistent with how authentic users behave on social media. However, threat actors have also displayed this behaviour as a way to increase the perceived legitimacy of their fabricated personas (aka \u201cbackstopping\u201d).", "kill_chain_phases": [ { "kill_chain_name": "mitre-attack", "phase_name": "establish-legitimacy" } ], "external_references": [ { "source_name": "mitre-attack", "url": "https://github.com/DISARMFoundation/DISARMframeworks/blob/main/generated_pages/techniques/T0144.md", "external_id": "T0144" } ], "object_marking_refs": [ "marking-definition--f79f25d2-8b96-4580-b169-eb7b613a7c31" ], "x_mitre_is_subtechnique": false, "x_mitre_platforms": [ "Windows", "Linux", "Mac" ], "x_mitre_version": "2.1" } ] }