Ciberseguridad desde Málaga · Redes, anzuelos y amenazas

← Amenazas
Técnica MITRE ATT&CK · Persistencia, Escalada de privilegios

T1547.001 Registry Run Keys / Startup Folder

Subtécnica de T1547 Boot or Logon Autostart Execution

Adversaries may achieve persistence by adding a program to a startup folder or referencing it with a Registry run key. Adding an entry to the "run keys" in the Registry or startup folder will cause the program referenced to be executed when a user logs in.(Citation: Microsoft Run Key) These programs will be executed under the context of the user and will have the account's associated permissions…

Ficha en MITRE ATT&CK ↗

Quién la usa · con noticias en Jábega

Reglas Sigma para cazarla

Mostrando 25 de 38.

Reglas de SigmaHQ · Detection Rule License 1.1. Técnica de MITRE ATT&CK®.