Attack Ent T1021 002 Smb Windows Admin Shares

Analyze MITRE ATT&CK T1021.002 SMB/Windows Admin Shares in the enterprise matrix. Use for TTP triage, detection engineering, hunting, defensive emulation planning, mitigations, incident response mapping, ATT&CK coverage, or questions mentioning T1021.002, SMB/Windows Admin Shares, or enterprise ATT&CK. Adversaries may use [Valid Accounts](https://attack.mitre.org/techniques/T1078) to interact with a remote network share using Server Message Block (SMB).

santosomar Updated

File contents

santosomar/mitre-attack-agent-skills/tree/main/enterprise/attack-ent-t1021-002-smb-windows-admin-shares commit c48b70939d

Frequently asked questions

npx skillmds@latest add santosomar/attack-ent-t1021-002-smb-windows-admin-shares