Adversaries may target devices that are transient across ICS networks and external networks.
Skills in this repository
CyberStrikeus/CyberStrike - Page 86
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Adversaries may use a spearphishing attachment, a variant of spearphishing, as a form of a social engineering attack against specific targets.
Adversaries may exploit a software vulnerability to take advantage of a programming error in a program, service, or within the operating system software or kernel itself to enable remote service ab...
Adversaries may gain access into industrial environments through systems exposed directly to the internet for remote access rather than through External Remote Services.
Adversaries may leverage remote services to move between assets and network segments.
Adversaries may leverage manufacturer or supplier set default credentials on control system devices.
Adversaries may perform a program download to transfer a user program to a controller.
Adversaries may transfer tools or other files from one system to another to stage adversary tools or other files over the course of an operation.
Adversaries may leverage credentials that are hardcoded in software or firmware to gain an unauthorized interactive user session to an asset.
Adversaries may install malicious or vulnerable firmware onto modular hardware devices.
System firmware on modern assets is often designed with an update feature.
Adversaries may steal the credentials of a specific user or service account using credential access techniques.
Adversaries may attempt to infect project files with malicious code.
Adversaries may modify or add a program on a controller to affect how it interacts with the physical process, peripheral devices and other hosts on the network.
Adversaries may exploit software vulnerabilities in an attempt to elevate privileges.
Adversaries may gain access to mobile devices through transfers or swaps from victims’ phone numbers to adversary-controlled SIM cards and mobile devices.
Adversaries may gain access to a system through a user visiting a website over the normal course of browsing.
Adversaries may move onto devices by exploiting or copying malware to devices connected via USB.
An adversary with physical access to a mobile device may seek to bypass the device’s lockscreen.
Adversaries may manipulate products or product delivery mechanisms prior to receipt by a final consumer for the purpose of data or system compromise.
Adversaries may manipulate hardware components in products prior to receipt by a final consumer for the purpose of data or system compromise.
Adversaries may manipulate application software prior to receipt by a final consumer for the purpose of data or system compromise.
Adversaries may manipulate products or product delivery mechanisms prior to receipt by a final consumer for the purpose of data or system compromise.
Adversaries may send malicious content to users in order to gain access to their mobile devices.
An adversary may push an update to a previously benign application to add malicious code.
Adversaries may exploit software vulnerabilities to gain initial access to a mobile device.
Adversaries may use scripts automatically executed at boot or logon initialization to establish persistence.
Adversaries may modify applications installed on a device to establish persistent access to a victim.
Adversaries may establish persistence using system mechanisms that trigger execution based on specific events.
Adversaries may establish persistence using system mechanisms that trigger execution based on specific events.
Adversaries may execute their own malicious payloads by hijacking the way an operating system runs applications.
Adversaries may execute their own malicious payloads by hijacking the way operating systems run applications.
Adversaries may modify system software binaries to establish persistent access to devices.
Adversaries may exploit software vulnerabilities in order to elevate privileges.
Adversaries may abuse Android’s device administration API to obtain a higher degree of control over the device.
Adversaries may circumvent mechanisms designed to control elevated privileges to gain higher-level permissions.
Adversaries may use steganography techniques in order to prevent the detection of hidden information.
Adversaries may perform software packing to conceal their code.
Adversaries may attempt to make a payload or file difficult to discover or analyze by encrypting, encoding, or otherwise obfuscating its contents on the device or in transit.
Adversaries may download and execute dynamic code not included in the original application package after installation.