T1030 Data Transfer Size Limits Mappings

An adversary may exfiltrate data in fixed size chunks instead of whole files or limit packet sizes below certain thresholds. This approach may be used to avoid triggering network data transfer threshold alerts.

View in MITRE ATT&CK®

Mappings

Capability ID Capability Description Mapping Type ATT&CK ID ATT&CK Name Notes
action.malware.variety.Export data Export data to another site or system related-to T1030 Data Transfer Size Limits
attribute.confidentiality.data_disclosure None related-to T1030 Data Transfer Size Limits