Adversaries may modify property list files (plist files) to enable other malicious activity, while also potentially evading and bypassing system defenses.
原文の言語: 英語
メニュー
このリポジトリの skills
SkillsMP は CyberStrikeus/CyberStrike から 7,442 件の skill を収集しています。skill を開くとソースと詳細を確認できます。
CyberStrikeus/CyberStrike収集済み skill 7,442 件中 40 件を表示しています。
Adversaries may modify property list files (plist files) to enable other malicious activity, while also potentially evading and bypassing system defenses.
原文の言語: 英語
Adversaries may impersonate a trusted person or organization in order to persuade and trick a target into performing some action on their behalf.
原文の言語: 英語
Adversaries may attempt to modify hierarchical structures in infrastructure-as-a-service (IaaS) environments in order to evade defenses.
原文の言語: 英語
Adversaries may fake, or spoof, a sender’s identity by modifying the value of relevant email headers in order to establish contact with victims under false pretenses.
原文の言語: 英語
Adversaries may employ various time-based methods to evade detection and analysis.
原文の言語: 英語
Adversaries may intentionally exclude certain files, folders, directories, file types, or system components from encryption or tampering during a ransomware or malicious payload execution.
原文の言語: 英語
Adversaries may attempt to access credential material stored in the process memory of the Local Security Authority Subsystem Service (LSASS).
原文の言語: 英語
Adversaries may attempt to extract credential material from the Security Account Manager (SAM) database either through in-memory techniques or through the Windows Registry where the SAM database is...
原文の言語: 英語
Adversaries may attempt to access or create a copy of the Active Directory domain database in order to steal credential information, as well as obtain other information about domain members such as...
原文の言語: 英語
Adversaries with SYSTEM access to a host may attempt to access Local Security Authority (LSA) secrets, which can contain a variety of different credential materials, such as credentials for service...
原文の言語: 英語
Adversaries may attempt to access cached domain credentials used to allow authentication to occur in the event a domain controller is unavailable.
原文の言語: 英語
Adversaries may attempt to access credentials and other sensitive information by abusing a Windows Domain Controller's application programming interface (API) to simulate the replication process fr...
原文の言語: 英語
Adversaries may gather credentials from the proc filesystem or `/proc`.
原文の言語: 英語
Adversaries may attempt to dump the contents of <code>/etc/passwd</code> and <code>/etc/shadow</code> to enable offline password cracking.
原文の言語: 英語
Adversaries may attempt to dump credentials to obtain account login and credential material, normally in the form of a hash or a clear text password.
原文の言語: 英語
Adversaries may passively sniff network traffic to capture information about an environment, including authentication material passed over the network.
原文の言語: 英語
Adversaries with no prior knowledge of legitimate credentials within the system or environment may guess passwords to attempt access to accounts.
原文の言語: 英語
Adversaries may use password cracking to attempt to recover usable credentials, such as plaintext passwords, when credential material such as password hashes are obtained.
原文の言語: 英語
Adversaries may use a single or small list of commonly used passwords against many different accounts to attempt to acquire valid account credentials.
原文の言語: 英語
Adversaries may use credentials obtained from breach dumps of unrelated accounts to gain access to target accounts through credential overlap.
原文の言語: 英語
Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
原文の言語: 英語
Adversaries may target multi-factor authentication (MFA) mechanisms, (i.e., smart cards, token generators, etc.) to gain access to credentials that can be used to access systems, services, and netw...
原文の言語: 英語
Adversaries may gather credential material by invoking or forcing a user to automatically provide authentication information through a mechanism in which they can intercept.
原文の言語: 英語
Adversaries may exploit software vulnerabilities in an attempt to collect credentials.
原文の言語: 英語
Adversaries can steal application access tokens as a means of acquiring credentials to access remote systems and resources.
原文の言語: 英語
An adversary may steal web application or service session cookies and use them to gain access to web applications or Internet services as an authenticated user without needing credentials.
原文の言語: 英語
Adversaries may search local file systems and remote file shares for files containing insecurely stored credentials.
原文の言語: 英語
Adversaries may search the Registry on compromised systems for insecurely stored credentials.
原文の言語: 英語
Adversaries may search the command history on compromised systems for insecurely stored credentials.
原文の言語: 英語
Adversaries may search for private key certificate files on compromised systems for insecurely stored credentials.
原文の言語: 英語
Adversaries may attempt to access the Cloud Instance Metadata API to collect credentials and other sensitive data.
原文の言語: 英語
Adversaries may attempt to find unsecured credentials in Group Policy Preferences (GPP).
原文の言語: 英語
Adversaries may gather credentials via APIs within a containers environment.
原文の言語: 英語
Adversaries may directly collect unsecured credentials stored or passed through user communication services.
原文の言語: 英語
Adversaries may search compromised systems to find and obtain insecurely stored credentials.
原文の言語: 英語
Adversaries may acquire credentials from Keychain.
原文の言語: 英語
An adversary with root access may gather credentials by reading `securityd`’s memory.
原文の言語: 英語
Adversaries may acquire credentials from web browsers by reading files specific to the target browser.
原文の言語: 英語
Adversaries may acquire credentials from the Windows Credential Manager.
原文の言語: 英語
Adversaries may acquire user credentials from third-party password managers.
原文の言語: 英語