logo

Attack Patterns

Use this page to search and filter attack patterns.

ValueExternal Ref
2FA bypass via real-time OTP relay
Abuse Elevation Control MechanismATT&CK Enterprise
Abuse of AWS STS and IAM tokens (AKIA/ASIA) for persistence
Account DiscoveryATT&CK Enterprise
Acquire AccessATT&CK Enterprise
Adversary-in-the-MiddleATT&CK Enterprise
Adversary-in-the-Middle (AiTM) Phishing
AI-assisted malicious content generation
AI-driven social engineering (deepfake voice, localized content)
AI-powered impersonation
AMSI and ETW bypass
Application Layer ProtocolATT&CK Enterprise
Asymmetric CryptographyATT&CK Enterprise
Authentication bypass
Automated AI-powered ransom negotiation/chatbot
Browser Data Theft
Browser Information DiscoveryATT&CK Enterprise
Brute Force
Brute ForceATT&CK Enterprise
Brute force attacks against remote access (default/weak credentials)
Brute Force Password Cracking
Bypass User Account ControlATT&CK Enterprise
Certificate-based Password Generation
Cloned and fake retail websites
Cloud AccountsATT&CK Enterprise
Command and Scripting InterpreterATT&CK Enterprise
Command injection in web components
Connectivity check via PING before download
Content Spoofer
Coordinated social media amplification
Credential abuse / Valid account misuse
Credential brute-force against VPN/OWA/RDWeb
Credential dumping from MySQL database
Credential exfiltration to C2
Credential harvesting
Credential harvesting from browsers and collaboration apps
Credential harvesting via fake e-commerce forms
Credential harvesting via phishing links
Credential harvesting via phishing pages
Credential reuse / password reuse
Credentials from Web BrowsersATT&CK Enterprise
Credentials In FilesATT&CK Enterprise
Credentials in RegistryATT&CK Enterprise
Credential StuffingATT&CK Enterprise
Credential Stuffing
Credential Theft via Infostealer
Cross-platform MIPS-targeting botnet infection
Cyber espionage
Data Encrypted for ImpactATT&CK Enterprise
Data exfiltration to attacker-controlled server