본문으로 바로가기

ATT&CK 기법 · Initial Access · Persistence · Privilege Escalation · Stealth

Valid Accounts T1078

이 기법을 다룬 REVELARE 한국어 위협 분석 14 · Initial Access · Persistence · Privilege Escalation · Stealth

이 기법을 다룬 분석

MITRE 공식 정의

Adversaries may obtain and abuse credentials of existing accounts as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion. Compromised credentials may be used to bypass access controls placed on various resources on systems within the network and may even be used for persistent access to remote systems and externally available services, such as VPNs, Outlook Web Access, network devices, and remote desktop.(Citation: volexity_0day_sophos_FW)

플랫폼: Containers, ESXi, IaaS, Identity Provider, Linux, macOS, Network Devices, Office Suite, SaaS, Windows
Valid Accounts (T1078) — ATT&CK 기법 분석 | REVELARE