MITRE ATT&CK
Adversary tactics and techniques framework
714
Techniques
14
Tactics
0
Mitigations
4.632
Actor-Technique Links
MITRE ATT&CK 714
| ID | Techniques | Tactic | Platforms | Threat Actors | Actions |
|---|---|---|---|---|---|
| T1018 | Remote System Discovery | Discovery | ESXi, Linux, macOS... | 40 | |
| T1020 | Automated Exfiltration | Exfiltration | Linux, macOS, Networ... | 7 | |
| T1020.001 | Traffic Duplication Sub | Exfiltration | Network Devices, Iaa | 0 | |
| T1021 | Remote Services | Lateral Movement | Linux, macOS, Window... | 3 | |
| T1021.001 | Remote Desktop Protocol Sub | Lateral Movement | Windows | 37 | |
| T1021.002 | SMB/Windows Admin Shares Sub | Lateral Movement | Windows | 27 | |
| T1021.003 | Distributed Component Object Model Sub | Lateral Movement | Windows | 0 | |
| T1021.004 | SSH Sub | Lateral Movement | ESXi, Linux, macOS | 19 | |
| T1021.005 | VNC Sub | Lateral Movement | Linux, Windows, macO | 4 | |
| T1021.006 | Windows Remote Management Sub | Lateral Movement | Windows | 5 | |
| T1021.007 | Cloud Services Sub | Lateral Movement | IaaS, Identity Provi... | 3 | |
| T1021.008 | Direct Cloud VM Connections Sub | Lateral Movement | IaaS | 0 | |
| T1025 | Data from Removable Media | Collection | Linux, macOS, Window | 4 | |
| T1027 | Obfuscated Files or Information | Stealth | ESXi, Linux, macOS... | 18 | |
| T1027.001 | Binary Padding Sub | Stealth | Linux, macOS, Window | 8 | |
| T1027.002 | Software Packing Sub | Stealth | Linux, macOS, Window | 23 | |
| T1027.003 | Steganography Sub | Stealth | Linux, macOS, Window | 9 | |
| T1027.004 | Compile After Delivery Sub | Stealth | Linux, macOS, Window | 4 | |
| T1027.005 | Indicator Removal from Tools Sub | Stealth | Linux, macOS, Window | 7 | |
| T1027.006 | HTML Smuggling Sub | Stealth | Linux, macOS, Window | 1 | |
| T1027.007 | Dynamic API Resolution Sub | Stealth | Windows | 3 | |
| T1027.008 | Stripped Payloads Sub | Stealth | Linux, macOS, Networ... | 0 | |
| T1027.009 | Embedded Payloads Sub | Stealth | Linux, macOS, Window | 3 | |
| T1027.010 | Command Obfuscation Sub | Stealth | Linux, macOS, Window | 29 | |
| T1027.011 | Fileless Storage Sub | Stealth | Linux, Windows | 2 |