MITRE ATT&CK Enterprise
Search and filter objects.
19.1
| ID | Object Name↑ | Stix Type | Type | ||
|---|---|---|---|---|---|
| T1003.008 | /etc/passwd and /etc/shadow | attack-pattern | Sub-technique | ||
| C0028 | 2015 Ukraine Electric Power Attack | campaign | Campaign | ||
| C0025 | 2016 Ukraine Electric Power Attack | campaign | Campaign | ||
| C0034 | 2022 Ukraine Electric Power Attack | campaign | Campaign | ||
| C0063 | 2025 Poland Wiper Attacks | campaign | Campaign | ||
| C0057 | 3CX Supply Chain Attack | campaign | Campaign | ||
| S0066 | 3PARA RAT | malware | Software | ||
| S0065 | 4H RAT | malware | Software | ||
| S0677 | AADInternals | tool | Software | ||
| S0469 | ABK | malware | Software | ||
| T1548 | Abuse Elevation Control Mechanism | attack-pattern | Technique | ||
| DET0210 | Abuse of Domain Accounts | x-mitre-detection-strategy | Detection Strategy | ||
| DET0413 | Abuse of Information Repositories for Data Collection | x-mitre-detection-strategy | Detection Strategy | ||
| DET0455 | Abuse of PowerShell for Arbitrary Execution | x-mitre-detection-strategy | Detection Strategy | ||
| T1134 | Access Token Manipulation | attack-pattern | Technique | ||
| T1546.008 | Accessibility Features | attack-pattern | Sub-technique | ||
| T1531 | Account Access Removal | attack-pattern | Technique | ||
| DET0120 | Account Access Removal via Multi-Platform Audit Correlation | x-mitre-detection-strategy | Detection Strategy | ||
| T1087 | Account Discovery | attack-pattern | Technique | ||
| T1098 | Account Manipulation | attack-pattern | Technique | ||
| DET0096 | Account Manipulation Behavior Chain Detection | x-mitre-detection-strategy | Detection Strategy | ||
| M1036 | Account Use Policies | course-of-action | Mitigation | ||
| S1167 | AcidPour | malware | Software | ||
| S1125 | AcidRain | malware | Software | ||
| T1650 | Acquire Access | attack-pattern | Technique | ||
| T1583 | Acquire Infrastructure | attack-pattern | Technique | ||
| S1028 | Action RAT | malware | Software | ||
| M1015 | Active Directory Configuration | course-of-action | Mitigation | ||
| DC0084 | Active Directory Credential Request | x-mitre-data-component | Data Component | ||
| DC0071 | Active Directory Object Access | x-mitre-data-component | Data Component | ||
| DC0087 | Active Directory Object Creation | x-mitre-data-component | Data Component | ||
| DC0068 | Active Directory Object Deletion | x-mitre-data-component | Data Component | ||
| DC0066 | Active Directory Object Modification | x-mitre-data-component | Data Component | ||
| DC0103 | Active DNS | x-mitre-data-component | Data Component | ||
| T1595 | Active Scanning | attack-pattern | Technique | ||
| T1547.014 | Active Setup | attack-pattern | Sub-technique | ||
| S0202 | adbupd | malware | Software | ||
| T1137.006 | Add-ins | attack-pattern | Sub-technique | ||
| T1098.001 | Additional Cloud Credentials | attack-pattern | Sub-technique | ||
| T1098.003 | Additional Cloud Roles | attack-pattern | Sub-technique | ||
| T1098.006 | Additional Container Cluster Roles | attack-pattern | Sub-technique | ||
| T1098.002 | Additional Email Delegate Permissions | attack-pattern | Sub-technique | ||
| T1098.007 | Additional Local or Domain Groups | attack-pattern | Sub-technique | ||
| S0552 | AdFind | tool | Software | ||
| G0018 | admin@338 | intrusion-set | Group | ||
| T1557 | Adversary-in-the-Middle | attack-pattern | Technique | ||
| S0045 | ADVSTORESHELL | malware | Software | ||
| S0331 | Agent Tesla | malware | Software | ||
| S0092 | Agent.btz | malware | Software |
