Skip to main content

这个仓库中的 skills

CyberStrikeus/CyberStrike - 第 88 页

SkillsMP 已收集 CyberStrikeus/CyberStrike 中的 7,442 个 Skill。打开任一 Skill 可查看来源和详情。

CyberStrikeus/CyberStrike

已展示 40 / 7,442 个已收集 Skill。

职业分类
信息安全分析师
描述

Adversaries may attempt to get a listing of services running on remote hosts, including those that may be vulnerable to remote software exploitation.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may attempt to get information about running processes on a device.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may attempt to get detailed information about a device’s operating system and hardware, including versions, patches, and architecture.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may exploit remote services of enterprise servers, workstations, or other resources to gain unauthorized access to internal systems once inside of a network.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may perform Network Denial of Service (DoS) attacks to degrade or block the availability of targeted resources to users.

原文语言:英语

更新
职业分类
信息安全分析师
描述

An adversary may encrypt files stored on a mobile device to prevent the user from accessing them.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may delete, alter, or send SMS messages without user authorization.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may interrupt availability of system and network resources by inhibiting access to accounts utilized by legitimate users.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may alter data en route to storage or other systems in order to manipulate external outcomes or hide activity.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may insert, delete, or alter data in order to manipulate external outcomes or hide activity.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may perform Endpoint Denial of Service (DoS) attacks to degrade or block the availability of services to users.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may destroy data and files on specific devices or in large numbers to interrupt availability to systems, services, and network resources.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may try to access and collect application data resident on the device.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may abuse clipboard manager APIs to obtain sensitive information copied to the device clipboard.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may log user keystrokes to intercept credentials or other information from the user as the user types them.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may use methods of capturing user input to obtain credentials or collect information.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may capture audio to collect information by leveraging standard operating system APIs of a mobile device.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may exploit the lack of authentication in signaling system network nodes to track the location of mobile devices by impersonating a node.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may track a device’s physical location through use of standard operating system APIs via malicious or exploited applications on the compromised device.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may abuse accessibility features in Android devices to steal sensitive data and to spread malware to other devices.

原文语言:英语

更新
职业分类
信息安全分析师
描述

An adversary can leverage a device’s cameras to gather information by capturing video recordings.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may use screen capture to collect additional information about a target device, such as applications running in the foreground, user data, credentials, or other sensitive information.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may collect data within notifications sent by the operating system or other applications.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may compress and/or encrypt data that is collected prior to exfiltration.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may search local system sources, such as file systems or local databases, to find files of interest and sensitive data prior to exfiltration.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may make, forward, or block phone calls without user authorization.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may utilize standard operating system APIs to gather calendar entry data.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may utilize standard operating system APIs to gather call log data.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may utilize standard operating system APIs to gather contact list data.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may utilize standard operating system APIs to gather SMS messages.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may utilize standard operating system APIs to gather account data.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may utilize standard operating system APIs to collect data from permission-backed data stores on a device, such as the calendar or contact list.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may attempt to position themselves between two or more networked devices to support follow-on behaviors such as Transmitted Data Manipulation or Endpoint Denial of Service.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may abuse the “linked devices” feature on messaging applications, such as Signal and WhatsApp, to register the user’s account to an adversary-controlled device.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may steal data by exfiltrating it over an un-encrypted network protocol other than that of the existing command and control channel.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may steal data by exfiltrating it over a different protocol than that of the existing command and control channel.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may steal data by exfiltrating it over an existing command and control channel.

原文语言:英语

更新
职业分类
信息安全分析师
描述

Adversaries may communicate using application layer protocols associated with web protocols traffic to avoid detection/network filtering by blending in with existing traffic.

原文语言:英语

更新
已展示 40 / 7,442 个已收集 Skill。