Common Information
Type | Value |
---|---|
Value |
Server - T1583.004 |
Category | Attack-Pattern |
Type | Mitre-Attack-Pattern |
Misp Type | Cluster |
Description | Adversaries may buy, lease, rent, or obtain physical servers that can be used during targeting. Use of servers allows an adversary to stage, launch, and execute an operation. During post-compromise activity, adversaries may utilize servers for various tasks, such as watering hole operations in [Drive-by Compromise](https://attack.mitre.org/techniques/T1189), enabling [Phishing](https://attack.mitre.org/techniques/T1566) operations, or facilitating [Command and Control](https://attack.mitre.org/tactics/TA0011). Instead of compromising a third-party [Server](https://attack.mitre.org/techniques/T1584/004) or renting a [Virtual Private Server](https://attack.mitre.org/techniques/T1583/003), adversaries may opt to configure and run their own servers in support of operations. Free trial periods of cloud servers may also be abused.(Citation: Free Trial PurpleUrchin)(Citation: Freejacked) Adversaries may only need a lightweight setup if most of their activities will take place using online infrastructure. Or, they may need to build extensive infrastructure if they want to test, communicate, and control other aspects of their activities on their own systems.(Citation: NYTStuxnet) |
Details | Published | Attributes | CTI | Title | ||
---|---|---|---|---|---|---|
Details | Website | 2574-01-02 | 0 | Editors Picks, Apps We Recommend | TechSpot | ||
Details | Website | 2243-01-01 | 25 | 腾讯安全威胁情报中心推出2023年1月必修安全漏洞清单 | ||
Details | Website | 2083-07-04 | 9 | SonicWall VPN Portal Critical Flaw (CVE-2020-5135) | ||
Details | Website | 2083-02-01 | 4 | 守夜人之剑 - 攻防演练漏洞必修清单2023 | ||
Details | Website | 2061-05-15 | 4 | Flash Notice: Critical Linux Kernel Vulnerability Can Lead to Remote Code Execution | ||
Details | Website | 2051-02-02 | 32 | UNKNOWN | ||
Details | Website | 2051-02-02 | 32 | UNKNOWN | ||
Details | Website | 2050-08-03 | 29 | Kiddoware Kids Place Parental Control Android App 3.8.49 XSS / CSRF / File Upload - CXSecurity.com | ||
Details | Website | 2049-04-02 | 1 | Apache Exploited Zero-Day Patched - IBM X-Force Collection | ||
Details | Website | 2049-01-13 | 27 | 腾讯安全威胁情报中心推出2023年7月必修安全漏洞清单 | ||
Details | Website | 2030-03-02 | 20 | APT QUARTERLY HIGHLIGHTS - Q3 : 2023 - CYFIRMA | ||
Details | Website | 2028-01-01 | 3 | A Tour of the Worm | ||
Details | Website | 2025-12-24 | 8 | 每日安全动态推送(24/12/25) | CTF导航 | ||
Details | Website | 2025-12-17 | 17 | Stories from the SOC: Caught in the Trap: Detecting and… | ||
Details | Website | 2025-12-13 | 0 | Best Practices for Securing Web Applications Against Modern… | ||
Details | Website | 2025-11-07 | 1 | Vault7 - Home | ||
Details | Website | 2025-07-05 | 46 | Obfuscated Malicious Python Scripts with PyArmor - SANS Internet Storm Center | ||
Details | Website | 2025-07-05 | 20 | Online Services Again Abused to Exfiltrate Data - SANS Internet Storm Center | ||
Details | Website | 2025-07-02 | 13 | Inside a Malware Campaign: A Nigerian Hacker’s Perspective – CyberArmor | ||
Details | Website | 2025-06-01 | 5 | March 2025 Cybersecurity Consulting Updates and Ransomware… | ||
Details | Website | 2025-05-14 | 4 | April 2025 - Newsletter | Red Piranha | ||
Details | Website | 2025-04-28 | 23 | The SOS Intelligence CVE Chatter Weekly Top Ten - 28 April 2025 - SOS Intelligence | ||
Details | Website | 2025-04-28 | 40 | Navigating Through The Fog | ||
Details | Website | 2025-04-28 | 2 | 윈도우 11 보안 기능 VBS Enclaves가 일부 시스템에서 더 이상 사용되지 않음 | ||
Details | Website | 2025-04-28 | 4 | SRUM-DUMP Version 3: Uncovering Malware Activity in Forensics - SANS Internet Storm Center |