Adversaries may target devices that are transient across ICS networks and external networks.
Quellsprache: Englisch
Menü
Skills in diesem Repository
SkillsMP hat 7.442 Skills aus CyberStrikeus/CyberStrike gesammelt. Öffne einen Skill, um Quelle und Details zu prüfen.
CyberStrikeus/CyberStrikeEs werden 40 von 7.442 gesammelten Skills angezeigt.
Adversaries may target devices that are transient across ICS networks and external networks.
Quellsprache: Englisch
Adversaries may use a spearphishing attachment, a variant of spearphishing, as a form of a social engineering attack against specific targets.
Quellsprache: Englisch
Adversaries may exploit a software vulnerability to take advantage of a programming error in a program, service, or within the operating system software or kernel itself to enable remote service ab...
Quellsprache: Englisch
Adversaries may gain access into industrial environments through systems exposed directly to the internet for remote access rather than through External Remote Services.
Quellsprache: Englisch
Adversaries may leverage remote services to move between assets and network segments.
Quellsprache: Englisch
Adversaries may leverage manufacturer or supplier set default credentials on control system devices.
Quellsprache: Englisch
Adversaries may perform a program download to transfer a user program to a controller.
Quellsprache: Englisch
Adversaries may transfer tools or other files from one system to another to stage adversary tools or other files over the course of an operation.
Quellsprache: Englisch
Adversaries may leverage credentials that are hardcoded in software or firmware to gain an unauthorized interactive user session to an asset.
Quellsprache: Englisch
Adversaries may install malicious or vulnerable firmware onto modular hardware devices.
Quellsprache: Englisch
System firmware on modern assets is often designed with an update feature.
Quellsprache: Englisch
Adversaries may steal the credentials of a specific user or service account using credential access techniques.
Quellsprache: Englisch
Adversaries may attempt to infect project files with malicious code.
Quellsprache: Englisch
Adversaries may modify or add a program on a controller to affect how it interacts with the physical process, peripheral devices and other hosts on the network.
Quellsprache: Englisch
Adversaries may exploit software vulnerabilities in an attempt to elevate privileges.
Quellsprache: Englisch
Adversaries may gain access to mobile devices through transfers or swaps from victims’ phone numbers to adversary-controlled SIM cards and mobile devices.
Quellsprache: Englisch
Adversaries may gain access to a system through a user visiting a website over the normal course of browsing.
Quellsprache: Englisch
Adversaries may move onto devices by exploiting or copying malware to devices connected via USB.
Quellsprache: Englisch
An adversary with physical access to a mobile device may seek to bypass the device’s lockscreen.
Quellsprache: Englisch
Adversaries may manipulate products or product delivery mechanisms prior to receipt by a final consumer for the purpose of data or system compromise.
Quellsprache: Englisch
Adversaries may manipulate hardware components in products prior to receipt by a final consumer for the purpose of data or system compromise.
Quellsprache: Englisch
Adversaries may manipulate application software prior to receipt by a final consumer for the purpose of data or system compromise.
Quellsprache: Englisch
Adversaries may manipulate products or product delivery mechanisms prior to receipt by a final consumer for the purpose of data or system compromise.
Quellsprache: Englisch
Adversaries may send malicious content to users in order to gain access to their mobile devices.
Quellsprache: Englisch
An adversary may push an update to a previously benign application to add malicious code.
Quellsprache: Englisch
Adversaries may exploit software vulnerabilities to gain initial access to a mobile device.
Quellsprache: Englisch
Adversaries may use scripts automatically executed at boot or logon initialization to establish persistence.
Quellsprache: Englisch
Adversaries may modify applications installed on a device to establish persistent access to a victim.
Quellsprache: Englisch
Adversaries may establish persistence using system mechanisms that trigger execution based on specific events.
Quellsprache: Englisch
Adversaries may establish persistence using system mechanisms that trigger execution based on specific events.
Quellsprache: Englisch
Adversaries may execute their own malicious payloads by hijacking the way an operating system runs applications.
Quellsprache: Englisch
Adversaries may execute their own malicious payloads by hijacking the way operating systems run applications.
Quellsprache: Englisch
Adversaries may modify system software binaries to establish persistent access to devices.
Quellsprache: Englisch
Adversaries may exploit software vulnerabilities in order to elevate privileges.
Quellsprache: Englisch
Adversaries may abuse Android’s device administration API to obtain a higher degree of control over the device.
Quellsprache: Englisch
Adversaries may circumvent mechanisms designed to control elevated privileges to gain higher-level permissions.
Quellsprache: Englisch
Adversaries may use steganography techniques in order to prevent the detection of hidden information.
Quellsprache: Englisch
Adversaries may perform software packing to conceal their code.
Quellsprache: Englisch
Adversaries may attempt to make a payload or file difficult to discover or analyze by encrypting, encoding, or otherwise obfuscating its contents on the device or in transit.
Quellsprache: Englisch
Adversaries may download and execute dynamic code not included in the original application package after installation.
Quellsprache: Englisch