Attack Ent T1127 001 Msbuild

Analyze MITRE ATT&CK T1127.001 MSBuild in the enterprise matrix. Use for TTP triage, detection engineering, hunting, defensive emulation planning, mitigations, incident response mapping, ATT&CK coverage, or questions mentioning T1127.001, MSBuild, or enterprise ATT&CK. Adversaries may use MSBuild to proxy execution of code through a trusted Windows utility.

santosomar Updated

File contents

santosomar/mitre-attack-agent-skills/tree/main/enterprise/attack-ent-t1127-001-msbuild commit 60501aeb88

Frequently asked questions

npx skillmds@latest add santosomar/attack-ent-t1127-001-msbuild