← Back to Feed

The Detection Gap: MITRE ATT&CK T1140 and T1105

July 13, 2026 · Broadcom (Symantec) · Severity: MEDIUM

This article from Broadcom's Symantec presents a MITRE ATT&CK walkthrough focusing on techniques T1140 (Deobfuscate/Decode Files or Information) and T1105 (Remote File Copy). It explores the detection gap associated with these techniques and provides guidance on how to identify and mitigate them.

Key Takeaways

  • T1140 involves deobfuscating or decoding files or information to evade detection.
  • T1105 covers remote file copy techniques used for data exfiltration or tool deployment.
  • Understanding these techniques helps close detection gaps in security monitoring.
☕ Buy a Coffee