cyberstrikeus
- 7.2k skills
- 0 followers
- 1 day ago last updated
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌
- ▌ T1672 Email Spoofing · cyberstrikeusAdversaries may fake, or spoof, a sender’s identity by modifying the value of relevant email headers in order to establish contact with victims under false pretenses.
- ▌
- ▌ T1490 Inhibit System Recovery · cyberstrikeusAdversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
- ▌ T1491 001 Internal Defacement · cyberstrikeusAn adversary may deface systems internal to an organization in an attempt to intimidate or mislead users, thus discrediting the integrity of the systems.
- ▌ T1491 002 External Defacement · cyberstrikeusAn adversary may deface systems external to an organization in an attempt to deliver messaging, intimidate, or otherwise mislead an organization or users.
- ▌ T1496 002 Bandwidth Hijacking · cyberstrikeusAdversaries may leverage the network bandwidth resources of co-opted systems to complete resource-intensive tasks, which may impact system and/or hosted service availability.
- ▌ T1499 001 Os Exhaustion Flood · cyberstrikeusAdversaries may launch a denial of service (DoS) attack targeting an endpoint's operating system (OS).
- ▌ T1561 002 Disk Structure Wipe · cyberstrikeusAdversaries may corrupt or wipe the disk data structures on a hard drive necessary to boot a system; targeting specific critical systems or in large numbers in a network to interrupt availability t...
- ▌ T1589 001 Credentials · cyberstrikeusAdversaries may gather credentials that can be used during targeting.
- ▌ T1595 Active Scanning · cyberstrikeusAdversaries may execute active reconnaissance scans to gather information that can be used during targeting.
- ▌
- ▌ Incident Response Reporting And Communication Rs Co Incident · cyberstrikeusResponse activities are coordinated with internal and external stakeholders as required by laws, regulations, or policies
- ▌ Ac 17 Remote Access · cyberstrikeusEstablish and document usage restrictions, configuration/connection requirements, and implementation guidance for each type of remote access allowed;
- ▌ Ir 8 1 Breaches · cyberstrikeusInclude the following in the Incident Response Plan for breaches involving personally identifiable information: A process to determine if notice to in
- ▌ Ir 9 2 Training · cyberstrikeusProvide information spillage response training [organization-defined].
- ▌
- ▌ Ma 3 Maintenance Tools · cyberstrikeusApprove, control, and monitor the use of system maintenance tools;
- ▌ Ma 7 Field Maintenance · cyberstrikeusRestrict or prohibit field maintenance on [organization-defined] to [organization-defined].
- ▌ Mp 2 Media Access · cyberstrikeusRestrict access to [organization-defined] to [organization-defined].
- ▌ Pm 32 Purposing · cyberstrikeusAnalyze [organization-defined] supporting mission essential services or functions to ensure that the information resources are being used consistent w
- ▌ Ra 7 Risk Response · cyberstrikeusRespond to findings from security and privacy assessments, monitoring, and audits in accordance with organizational risk tolerance.
- ▌ T0887 Wireless Sniffing · cyberstrikeusAdversaries may seek to capture radio frequency (RF) communication used for remote control and reporting in distributed environments.
- ▌ T0826 Loss Of Availability · cyberstrikeusAdversaries may attempt to disrupt essential components or systems to prevent owner and operator from delivering products or services.
- ▌ T0832 Manipulation Of View · cyberstrikeusAdversaries may attempt to manipulate the information reported back to operators or controllers.
- ▌ T0848 Rogue Master · cyberstrikeusAdversaries may setup a rogue master to leverage control server functions to communicate with outstations.
- ▌ T0839 Module Firmware · cyberstrikeusAdversaries may install malicious or vulnerable firmware onto modular hardware devices.
- ▌ T0857 System Firmware · cyberstrikeusSystem firmware on modern assets is often designed with an update feature.
- ▌ T1641 Data Manipulation · cyberstrikeusAdversaries may insert, delete, or alter data in order to manipulate external outcomes or hide activity.
- ▌ T1417 Input Capture · cyberstrikeusAdversaries may use methods of capturing user input to obtain credentials or collect information.