Attack Ent T1134 001 Token Impersonation Theft

Analyze MITRE ATT&CK T1134.001 Token Impersonation/Theft in the enterprise matrix. Use for TTP triage, detection engineering, hunting, defensive emulation planning, mitigations, incident response mapping, ATT&CK coverage, or questions mentioning T1134.001, Token Impersonation/Theft, or enterprise ATT&CK. Adversaries may duplicate then impersonate another user's existing token to escalate privileges and bypass access controls.

santosomar Updated

File contents

santosomar/mitre-attack-agent-skills/tree/main/enterprise/attack-ent-t1134-001-token-impersonation-theft commit c388d06cc2

Frequently asked questions

npx skillmds@latest add santosomar/attack-ent-t1134-001-token-impersonation-theft