Intelligence View
⚡ tsecurity.de Intelligence
add-admin: Tiny EXE To Add Administrative Account
I wrote a tiny EXE program (1,5 KB) that creates an account and adds it to the local administrators group. It’s written in 32-bit assembly code (it’s not she…
I wrote a tiny EXE program (1,5 KB) that creates an account and adds it to the local administrators group. It’s written in 32-bit assembly code (it’s not shellcode), and needs to be assembled with nasm and then linked to a PE file. The first 3 %define statements define the account name, password and local […]
Cyber Threat Intelligence & Forensik
Bedrohungsgraph · ATT&CK-Mapping · Exploit-Belege
CTI Threat Relationship Graph
Akteure · Techniken · Beziehungen
CVE / Incident Threat Actor Software MITRE ATT&CK CWE Weakness IoC
MITRE ATT&CK Matrix Navigator
Enterprise-Matrix · nur belegte Techniken
T1059TA0002 · Execution
Command and Scripting Interpreter
Mitigation: M1038 Execution Prevention & Script Block Logging
Quelle: Kontext-Klassifikation des Artikeltextes
Reconnaissance
–
Resource Development
–
Initial Access
–
Execution
Persistence
–
Privilege Escalation
–
Defense Evasion
–
Credential Access
–
Discovery
–
Lateral Movement
–
Collection
–
Command and Control
–
Exfiltration
–
Impact
–