Attack Matrix
Story: Critical Vulnerability Found in Rust's TAR Library Could Lead to Remote Code Execution
Identified Techniques: T1203, T1203.001, T1190 - Exploit Public-Facing Application, T1071.001 - Web Protocols, T1071.002 - File Transfer Protocols, T1566 - Phishing
Note: Sub-techniques are displayed under their parent techniques in the matrix below.
Legend:
Standard Techniques
Techniques Identified in This Story
| Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
|---|---|---|---|---|---|---|---|---|---|---|---|
About MITRE ATT&CK®:
MITRE ATT&CK® is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service community.