ATT&CKTechniques

Techniques

475 results

IDNameTacticsSub-techniquesExamples
T1222.002 Linux and Mac Permissions 015
T1480.001 Environmental Keying 010
T1480.002 Mutual Exclusion 020
T1484.001 Group Policy Modification 016
T1484.002 Trust Modification 04
T1485.001 Lifecycle-Triggered Deletion 00
T1491.001 Internal Defacement 015
T1491.002 External Defacement 02
T1496.001 Compute Hijacking 014
T1496.002 Bandwidth Hijacking 00
T1496.003 SMS Pumping 00
T1496.004 Cloud Service Hijacking 00
T1497.001 System Checks 070
T1497.002 User Activity Based Checks 07
T1497.003 Time Based Checks 049
T1498.001 Direct Network Flood 00
T1498.002 Reflection Amplification 00
T1499.001 OS Exhaustion Flood 00
T1499.002 Service Exhaustion Flood 00
T1499.003 Application Exhaustion Flood 00
T1499.004 Application or System Exploitation 01
T1505.001 SQL Stored Procedures 02
T1505.002 Transport Agent 01
T1505.003 Web Shell 066
T1505.004 IIS Components 05
T1505.005 Terminal Services DLL 00
T1505.006 vSphere Installation Bundles 02
T1518.001 Security Software Discovery 0141
T1518.002 Backup Software Discovery 01
T1542.001 System Firmware 03
T1542.002 Component Firmware 02
T1542.003 Bootkit 09
T1542.004 ROMMONkit 00
T1542.005 TFTP Boot 00
T1543.001 Launch Agent 023
T1543.002 Systemd Service 016
T1543.003 Windows Service 0140
T1543.004 Launch Daemon 011
T1543.005 Container Service 00
T1546.001 Change Default File Association 02
T1546.002 Screensaver 01
T1546.003 Windows Management Instrumentation Event Subscription 025
T1546.004 Unix Shell Configuration Modification 07
T1546.005 Trap 00
T1546.006 LC_LOAD_DYLIB Addition 00
T1546.007 Netsh Helper DLL 01
T1546.008 Accessibility Features 07
T1546.009 AppCert DLLs 01
T1546.010 AppInit DLLs 04
T1546.011 Application Shimming 04

Data from MITRE ATT&CK® (Enterprise). ATT&CK® is a registered trademark of The MITRE Corporation.