{
  "technique_id": "T1679",
  "name": "Selective Exclusion",
  "tactics": [
    "Stealth"
  ],
  "platforms": [
    "Windows"
  ],
  "summary": "Adversaries may intentionally exclude certain files, folders, directories, file types, or system components from encryption or tampering during a ransomware or malicious payload execution. Some file extensions that adversaries may avoid encrypting include `.dll`, `.exe`, and `.lnk`...",
  "generated_by": "SOC Response Atlas by Basyrix"
}