{
  "technique_id": "T1119",
  "name": "Automated Collection",
  "tactics": [
    "Collection"
  ],
  "platforms": [
    "IaaS",
    "Linux",
    "macOS",
    "Office Suite",
    "SaaS",
    "Windows"
  ],
  "summary": "Once established within a system or network, an adversary may use automated techniques for collecting internal data. Methods for performing this technique could include use of a [Command and Scripting Interpreter](https://attack.mitre.org/techniques/T1059) to search for and copy information fitting set criteria such as file type, location, or name at specific time intervals...",
  "generated_by": "SOC Response Atlas by Basyrix"
}