Sigma Rule Library

MITRE ATT&CK technique

Phishing for Information detection rulesT1598

Phishing for Information (T1598) is a MITRE ATT&CK technique in the Reconnaissance tactic. This page lists the 1 community-maintained Sigma detection rule in the library mapped to T1598 and its sub-techniques. Each rule includes its detection logic, log source, false positives and original YAML. These rules mainly target windows.

Top products

Tactic