166 terms · 75/46/45
Technique № 038 · class: C2

Malware Delivery

Malware delivery encompasses the methods by which malicious software is transferred to a target system. This includes infected attachments, compromised websites, malicious ads, removable media, and compromised software updates.

Term

description · examples · notes

Malware delivery encompasses the methods by which malicious software is transferred to a target system. This includes infected attachments, compromised websites, malicious ads, removable media, and compromised software updates.

Description

Attackers use various concealment techniques to bypass security controls, including packing, payload encryption, and using legitimate services for storage and distribution.

Examples

  • Infected email attachment disguised as an invoice
  • Compromised website that automatically downloads malware to a vulnerable browser
  • Malicious code injected into a legitimate software update
  • USB device with malware left in a public location

Notes

  • A layered approach combining email filtering, endpoint protection, and media control is most effective.

Mentioned in the news

tags
Composite

Threats

used by 18

Defenses

countered by 11