| Domain | ID | Name | Use | |
|---|---|---|---|---|
| Enterprise | T1140 | 反混淆/解码文件或信息 |
OnionDuke can use a custom decryption algorithm to decrypt strings.[2] |
|
| Enterprise | T1071 | .001 | 应用层协议: Web Protocols | |
| Enterprise | T1003 | 操作系统凭证转储 | ||
| Enterprise | T1499 | 终端拒绝服务 |
OnionDuke has the capability to use a Denial of Service module.[2] |
|
| Enterprise | T1102 | .003 | 网络服务: One-Way Communication | |