Valid Accounts
Type: technique
Description: Adversaries may obtain and abuse credentials of existing accounts as a means of gaining Initial Access. Credentials may take the form of usernames and passwords of individual user accounts or API keys that provide access to various ML resources and services.
Compromised credentials may provide access to additional ML artifacts and allow the adversary to perform ML Artifacts discovery. Compromised credentials may also grant an adversary increased privileges such as write access to ML artifacts used during development or production.
Version: 0.1.0
Created At: 2025-03-04 10:27:40 -0500
Last Modified At: 2025-03-04 10:27:40 -0500
External References
Related Objects
- --> Initial Access (tactic): Using valid accounts to gain initial access to systems or machine learning environments.