ATT&CK 기법 · Lateral Movement
Remote Services T1021
이 기법을 다룬 REVELARE 한국어 위협 분석 5편 · Lateral Movement
이 기법을 다룬 분석
MITRE 공식 정의
Adversaries may use [Valid Accounts](https://attack.mitre.org/techniques/T1078) to log into a service that accepts remote connections, such as telnet, SSH, and VNC. The adversary may then perform actions as the logged-on user. In an enterprise environment, servers and workstations can be organized into domains. Domains provide centralized identity management, allowing users to login using one set of credentials across the entire network. If an adversary is able to obtain a s…
플랫폼: Linux, macOS, Windows, IaaS, ESXi