Skip to main content

이 저장소의 skills

CyberStrikeus/CyberStrike - 98페이지

SkillsMP는 CyberStrikeus/CyberStrike에서 7,442개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.

CyberStrikeus/CyberStrike

수집된 skill 7,442개 중 40개를 표시합니다.

직업 분류
정보 보안 분석가
설명

Adversaries may modify property list files (plist files) to enable other malicious activity, while also potentially evading and bypassing system defenses.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may impersonate a trusted person or organization in order to persuade and trick a target into performing some action on their behalf.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to modify hierarchical structures in infrastructure-as-a-service (IaaS) environments in order to evade defenses.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may fake, or spoof, a sender’s identity by modifying the value of relevant email headers in order to establish contact with victims under false pretenses.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may employ various time-based methods to evade detection and analysis.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may intentionally exclude certain files, folders, directories, file types, or system components from encryption or tampering during a ransomware or malicious payload execution.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to access credential material stored in the process memory of the Local Security Authority Subsystem Service (LSASS).

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to extract credential material from the Security Account Manager (SAM) database either through in-memory techniques or through the Windows Registry where the SAM database is...

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to access or create a copy of the Active Directory domain database in order to steal credential information, as well as obtain other information about domain members such as...

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries with SYSTEM access to a host may attempt to access Local Security Authority (LSA) secrets, which can contain a variety of different credential materials, such as credentials for service...

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to access cached domain credentials used to allow authentication to occur in the event a domain controller is unavailable.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to access credentials and other sensitive information by abusing a Windows Domain Controller's application programming interface (API) to simulate the replication process fr...

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may gather credentials from the proc filesystem or `/proc`.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to dump the contents of <code>/etc/passwd</code> and <code>/etc/shadow</code> to enable offline password cracking.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to dump credentials to obtain account login and credential material, normally in the form of a hash or a clear text password.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may passively sniff network traffic to capture information about an environment, including authentication material passed over the network.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries with no prior knowledge of legitimate credentials within the system or environment may guess passwords to attempt access to accounts.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may use password cracking to attempt to recover usable credentials, such as plaintext passwords, when credential material such as password hashes are obtained.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may use a single or small list of commonly used passwords against many different accounts to attempt to acquire valid account credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may use credentials obtained from breach dumps of unrelated accounts to gain access to target accounts through credential overlap.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may target multi-factor authentication (MFA) mechanisms, (i.e., smart cards, token generators, etc.) to gain access to credentials that can be used to access systems, services, and netw...

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may gather credential material by invoking or forcing a user to automatically provide authentication information through a mechanism in which they can intercept.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may exploit software vulnerabilities in an attempt to collect credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries can steal application access tokens as a means of acquiring credentials to access remote systems and resources.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

An adversary may steal web application or service session cookies and use them to gain access to web applications or Internet services as an authenticated user without needing credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may search local file systems and remote file shares for files containing insecurely stored credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may search the Registry on compromised systems for insecurely stored credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may search the command history on compromised systems for insecurely stored credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may search for private key certificate files on compromised systems for insecurely stored credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to access the Cloud Instance Metadata API to collect credentials and other sensitive data.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may attempt to find unsecured credentials in Group Policy Preferences (GPP).

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may gather credentials via APIs within a containers environment.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may directly collect unsecured credentials stored or passed through user communication services.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may search compromised systems to find and obtain insecurely stored credentials.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may acquire credentials from Keychain.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

An adversary with root access may gather credentials by reading `securityd`’s memory.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may acquire credentials from web browsers by reading files specific to the target browser.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may acquire credentials from the Windows Credential Manager.

원문 언어: 영어

업데이트
직업 분류
정보 보안 분석가
설명

Adversaries may acquire user credentials from third-party password managers.

원문 언어: 영어

업데이트
수집된 skill 7,442개 중 40개를 표시합니다.