Adversaries may modify property list files (plist files) to enable other malicious activity, while also potentially evading and bypassing system defenses.
원문 언어: 영어
메뉴
이 저장소의 skills
SkillsMP는 CyberStrikeus/CyberStrike에서 7,442개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.
CyberStrikeus/CyberStrike수집된 skill 7,442개 중 40개를 표시합니다.
Adversaries may modify property list files (plist files) to enable other malicious activity, while also potentially evading and bypassing system defenses.
원문 언어: 영어
Adversaries may impersonate a trusted person or organization in order to persuade and trick a target into performing some action on their behalf.
원문 언어: 영어
Adversaries may attempt to modify hierarchical structures in infrastructure-as-a-service (IaaS) environments in order to evade defenses.
원문 언어: 영어
Adversaries may fake, or spoof, a sender’s identity by modifying the value of relevant email headers in order to establish contact with victims under false pretenses.
원문 언어: 영어
Adversaries may employ various time-based methods to evade detection and analysis.
원문 언어: 영어
Adversaries may intentionally exclude certain files, folders, directories, file types, or system components from encryption or tampering during a ransomware or malicious payload execution.
원문 언어: 영어
Adversaries may attempt to access credential material stored in the process memory of the Local Security Authority Subsystem Service (LSASS).
원문 언어: 영어
Adversaries may attempt to extract credential material from the Security Account Manager (SAM) database either through in-memory techniques or through the Windows Registry where the SAM database is...
원문 언어: 영어
Adversaries may attempt to access or create a copy of the Active Directory domain database in order to steal credential information, as well as obtain other information about domain members such as...
원문 언어: 영어
Adversaries with SYSTEM access to a host may attempt to access Local Security Authority (LSA) secrets, which can contain a variety of different credential materials, such as credentials for service...
원문 언어: 영어
Adversaries may attempt to access cached domain credentials used to allow authentication to occur in the event a domain controller is unavailable.
원문 언어: 영어
Adversaries may attempt to access credentials and other sensitive information by abusing a Windows Domain Controller's application programming interface (API) to simulate the replication process fr...
원문 언어: 영어
Adversaries may gather credentials from the proc filesystem or `/proc`.
원문 언어: 영어
Adversaries may attempt to dump the contents of <code>/etc/passwd</code> and <code>/etc/shadow</code> to enable offline password cracking.
원문 언어: 영어
Adversaries may attempt to dump credentials to obtain account login and credential material, normally in the form of a hash or a clear text password.
원문 언어: 영어
Adversaries may passively sniff network traffic to capture information about an environment, including authentication material passed over the network.
원문 언어: 영어
Adversaries with no prior knowledge of legitimate credentials within the system or environment may guess passwords to attempt access to accounts.
원문 언어: 영어
Adversaries may use password cracking to attempt to recover usable credentials, such as plaintext passwords, when credential material such as password hashes are obtained.
원문 언어: 영어
Adversaries may use a single or small list of commonly used passwords against many different accounts to attempt to acquire valid account credentials.
원문 언어: 영어
Adversaries may use credentials obtained from breach dumps of unrelated accounts to gain access to target accounts through credential overlap.
원문 언어: 영어
Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
원문 언어: 영어
Adversaries may target multi-factor authentication (MFA) mechanisms, (i.e., smart cards, token generators, etc.) to gain access to credentials that can be used to access systems, services, and netw...
원문 언어: 영어
Adversaries may gather credential material by invoking or forcing a user to automatically provide authentication information through a mechanism in which they can intercept.
원문 언어: 영어
Adversaries may exploit software vulnerabilities in an attempt to collect credentials.
원문 언어: 영어
Adversaries can steal application access tokens as a means of acquiring credentials to access remote systems and resources.
원문 언어: 영어
An adversary may steal web application or service session cookies and use them to gain access to web applications or Internet services as an authenticated user without needing credentials.
원문 언어: 영어
Adversaries may search local file systems and remote file shares for files containing insecurely stored credentials.
원문 언어: 영어
Adversaries may search the Registry on compromised systems for insecurely stored credentials.
원문 언어: 영어
Adversaries may search the command history on compromised systems for insecurely stored credentials.
원문 언어: 영어
Adversaries may search for private key certificate files on compromised systems for insecurely stored credentials.
원문 언어: 영어
Adversaries may attempt to access the Cloud Instance Metadata API to collect credentials and other sensitive data.
원문 언어: 영어
Adversaries may attempt to find unsecured credentials in Group Policy Preferences (GPP).
원문 언어: 영어
Adversaries may gather credentials via APIs within a containers environment.
원문 언어: 영어
Adversaries may directly collect unsecured credentials stored or passed through user communication services.
원문 언어: 영어
Adversaries may search compromised systems to find and obtain insecurely stored credentials.
원문 언어: 영어
Adversaries may acquire credentials from Keychain.
원문 언어: 영어
An adversary with root access may gather credentials by reading `securityd`’s memory.
원문 언어: 영어
Adversaries may acquire credentials from web browsers by reading files specific to the target browser.
원문 언어: 영어
Adversaries may acquire credentials from the Windows Credential Manager.
원문 언어: 영어
Adversaries may acquire user credentials from third-party password managers.
원문 언어: 영어