{
  "technique_id": "T1567",
  "name": "Exfiltration Over Web Service",
  "tactics": [
    "Exfiltration"
  ],
  "platforms": [
    "ESXi",
    "Linux",
    "macOS",
    "Office Suite",
    "SaaS",
    "Windows"
  ],
  "summary": "Adversaries may use an existing, legitimate external Web service to exfiltrate data rather than their primary command and control channel. Popular Web services acting as an exfiltration mechanism may give a significant amount of cover due to the likelihood that hosts within a network are already communicating with them prior to compromise. Firewall rules may also already exist to permit traffic to these services...",
  "generated_by": "SOC Response Atlas by Basyrix"
}