What MITRE ATT&CK T1497.003: Time Based Checks (Enterprise Tactic TA0005 - Defense Evasion / TA0007 - Discovery) requires
MITRE ATT&CK T1497.003 (Time Based Checks) is an Enterprise Defense Evasion and Discovery sub-technique of T1497 (Virtualization/Sandbox Evasion). Adversaries may employ various time-based methods to detect and avoid virtualization and analysis environments. This may include enumerating time-based properties, such as uptime or the system clock, as well as the use of timers or other triggers to avoid a virtual machine environment (VME) or sandbox, specifically those that are automated or only operate for a limited amount of time. Affected platforms: Linux, macOS, Windows.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1497/003/
SHA-256 integrity: f070852f77e92dbca6256c70ff5feb68292b913587ed6c897a15e2aed7aaa66e
Primary Citations — 5 traced to source
- MITRE ATT&CK Technique T1497.003: Time Based Checks (https://attack.mitre.org/techniques/T1497/003/)
- MITRE ATT&CK Tactic TA0005: Defense Evasion (https://attack.mitre.org/tactics/TA0005/)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.