Skip to content

Technique Explorer

117 unique MITRE ATT&CK techniques across 143 adversary profiles

117
Unique Techniques
832
Total TTP Uses
14
Tactics Covered
143
Adversary Profiles
Kill-Chain Coverage
Reconnaissance
7
Resource Development
13
Initial Access
131
Execution
86
Persistence
97
Privilege Escalation
53
Defense Evasion
64
Credential Access
24
Discovery
20
Lateral Movement
26
Collection
65
Command and Control
75
Exfiltration
51
Impact
120
Most Prevalent Techniques
1T1078
Valid AccountsPersistence
64
2T1566.001
Spearphishing AttachmentInitial Access
52
3T1486
Data Encrypted for ImpactImpact
40
4T1190
Exploit Public-Facing ApplicationInitial Access
39
5T1071.001
Web ProtocolsCommand and Control
39
RECONReconnaissance4 techniques
T1598
Phishing for Information
3×
T1598.003
Spearphishing Link
2×
T1591
Gather Victim Org Information
1×
T1598.001
Spearphishing Service
1×
RESOURCEResource Development7 techniques
T1585.001
Social Media Accounts
2×
T1584.004
Compromise Infrastructure: Server
1×
T1583.004
Server Infrastructure Acquisition
1×
T1585.002
Email Accounts
1×
T1584
Compromise Infrastructure
1×
INIT ACCESSInitial Access13 techniques
T1195.002
Compromise Software Supply Chain
4×
T1566.003
Spearphishing via Service
2×
T1200
Hardware Additions
1×
T1566
Phishing
1×
T1195.003
Compromise Hardware Supply Chain
1×
T1195
Supply Chain Compromise
1×
T1195.001
Compromise Software Dependencies and Development Tools
1×
EXECExecution8 techniques
PERSISTPersistence6 techniques
PRIV ESCPrivilege Escalation3 techniques
DEF EVASIONDefense Evasion11 techniques
CRED ACCESSCredential Access8 techniques
T1539
Steal Web Session Cookie
4×
T1621
Multi-Factor Authentication Request Generation
3×
T1003
OS Credential Dumping
2×
T1110.004
Credential Stuffing
2×
T1528
Steal Application Access Token
1×
DISCOVERYDiscovery4 techniques
LAT MOVELateral Movement5 techniques
COLLECTIONCollection15 techniques
C2Command and Control11 techniques
EXFILExfiltration5 techniques
IMPACTImpact17 techniques
T1499
Endpoint Denial of Service
3×
T1531
Account Access Removal
3×
T1565
Data Manipulation
2×
T1561.001
Disk Content Wipe
1×
T1565.001
Stored Data Manipulation
1×
T1499.002
Service Exhaustion Flood
1×
Data sourced from MITRE ATT&CK. For educational purposes.