What MITRE ATT&CK T1036.012: Browser Fingerprint (Enterprise Tactic TA0005 - Stealth) requires
MITRE ATT&CK T1036.012 (Browser Fingerprint) is an Enterprise Stealth technique. Adversaries may attempt to blend in with legitimate traffic by spoofing browser and system attributes like operating system, system language, platform, user-agent string, resolution, time zone, etc. The HTTP User-Agent request header is a string that lets servers and network peers identify the application, operating system, vendor, and/or version of the requesting user agent. Adversaries may gather this information through System Information Discovery or by users navigating to adversary-controlled websites, and then use that information to craft their web traffic to evade defenses. Affected platforms: Linux, macOS, Windows. Sub-technique of ATT&CK T1036. ATT&CK-mapped mitigations: M1047 Audit.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1036/012/
SHA-256 integrity: d3f272e2c06b3daba0ea375a612e39afffc49991acb1239f5fb89af1031d4364
Primary Citations — 5 traced to source
- MITRE ATT&CK Technique T1036.012: Browser Fingerprint (https://attack.mitre.org/techniques/T1036/012/)
- MITRE ATT&CK Tactic TA0005: Stealth (https://attack.mitre.org/tactics/TA0005/)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-attack-t1036-012-browser-fingerprint.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-attack-t1036-012-browser-fingerprint.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-attack-t1036-012-browser-fingerprint
- Back to registry: Browse all 10,085 compliance nodes