ITM is an open framework - Submit your contributions now.

Insider Threat Matrix™Insider Threat Matrix™
  • ID: PR020.001
  • Created: 25th July 2024
  • Updated: 25th July 2024
  • Platforms: WindowsLinuxMacOSiOSAndroid
  • Contributor: Ismael Briones-Vilar

Renaming Files or Changing File Extensions

A subject may rename a file to obscure the content of the file or change the file extension to hide the file type. This can aid in avoiding suspicion and bypassing certain security filers and endpoint monitoring tools. For example, renaming a sensitive document from FinancialReport.docx to Recipes.txt before copying it to a USB mass storage device.