 | T1003.008 | /etc/passwd and /etc/shadow | attack-pattern | Sub-technique | |
 | C0028 | 2015 Ukraine Electric Power Attack | campaign | Campaign | |
 | C0025 | 2016 Ukraine Electric Power Attack | campaign | Campaign | |
 | C0034 | 2022 Ukraine Electric Power Attack | campaign | Campaign | |
 | C0063 | 2025 Poland Wiper Attacks | campaign | Campaign | |
 | C0057 | 3CX Supply Chain Attack | campaign | Campaign | |
 | S0066 | 3PARA RAT | malware | Software | |
 | S0065 | 4H RAT | malware | Software | |
 | S0677 | AADInternals | tool | Software | |
 | S0469 | ABK | malware | Software | |
 | T1548 | Abuse Elevation Control Mechanism | attack-pattern | Technique | |
 | DET0210 | Abuse of Domain Accounts | x-mitre-detection-strategy | | |
 | DET0413 | Abuse of Information Repositories for Data Collection | x-mitre-detection-strategy | | |
 | DET0455 | Abuse of PowerShell for Arbitrary Execution | x-mitre-detection-strategy | | |
 | T1134 | Access Token Manipulation | attack-pattern | Technique | |
 | T1546.008 | Accessibility Features | attack-pattern | Sub-technique | |
 | T1531 | Account Access Removal | attack-pattern | Technique | |
 | DET0120 | Account Access Removal via Multi-Platform Audit Correlation | x-mitre-detection-strategy | | |
 | T1087 | Account Discovery | attack-pattern | Technique | |
 | T1098 | Account Manipulation | attack-pattern | Technique | |
 | DET0096 | Account Manipulation Behavior Chain Detection | x-mitre-detection-strategy | | |
 | M1036 | Account Use Policies | course-of-action | Mitigation | |
 | S1167 | AcidPour | malware | Software | |
 | S1125 | AcidRain | malware | Software | |
 | T1650 | Acquire Access | attack-pattern | Technique | |
 | T1583 | Acquire Infrastructure | attack-pattern | Technique | |
 | S1028 | Action RAT | malware | Software | |
 | M1015 | Active Directory Configuration | course-of-action | Mitigation | |
 | DC0084 | Active Directory Credential Request | x-mitre-data-component | Data Component | |
 | DC0071 | Active Directory Object Access | x-mitre-data-component | Data Component | |
 | DC0087 | Active Directory Object Creation | x-mitre-data-component | Data Component | |
 | DC0068 | Active Directory Object Deletion | x-mitre-data-component | Data Component | |
 | DC0066 | Active Directory Object Modification | x-mitre-data-component | Data Component | |
 | DC0103 | Active DNS | x-mitre-data-component | Data Component | |
 | T1595 | Active Scanning | attack-pattern | Technique | |
 | T1547.014 | Active Setup | attack-pattern | Sub-technique | |
 | S0202 | adbupd | malware | Software | |
 | T1137.006 | Add-ins | attack-pattern | Sub-technique | |
 | T1098.001 | Additional Cloud Credentials | attack-pattern | Sub-technique | |
 | T1098.003 | Additional Cloud Roles | attack-pattern | Sub-technique | |
 | T1098.006 | Additional Container Cluster Roles | attack-pattern | Sub-technique | |
 | T1098.002 | Additional Email Delegate Permissions | attack-pattern | Sub-technique | |
 | T1098.007 | Additional Local or Domain Groups | attack-pattern | Sub-technique | |
 | S0552 | AdFind | tool | Software | |
 | G0018 | admin@338 | intrusion-set | Group | |
 | T1557 | Adversary-in-the-Middle | attack-pattern | Technique | |
 | S0045 | ADVSTORESHELL | malware | Software | |
 | S0331 | Agent Tesla | malware | Software | |
 | S0092 | Agent.btz | malware | Software | |