CAPEC 561 Windows Admin Shares with Stolen Credentials

Draft Detailed Unknown Risk

Description

An adversary guesses or obtains (i.e. steals or purchases) legitimate Windows administrator credentials (e.g. userID/password) to access Windows Admin Shares on a local machine or within a Windows domain.

Attack Execution Flow

4

Mitigations

3

Consequences

Indicators

3

Relationships

Related ATT&CK Techniques

1

Resources Required

1