Attack Matrix
Story: Critical Vulnerability CVE-2025-59287 in Windows Server Update Services
Identified Techniques: T1203, T1203.001, T1059.001 - PowerShell, T1068, T1071.001 - Web Protocols
Note: Sub-techniques are displayed under their parent techniques in the matrix below.
Legend:
Standard Techniques
Techniques Identified in This Story
| Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
|---|---|---|---|---|---|---|---|---|---|---|---|
About MITRE ATT&CK®:
MITRE ATT&CK® is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service community.