Bidda Sovereign Intelligence · 10,085 Verified Nodes · 39 Sovereign Pillars

MITRE ATT&CK Mobile T1635: Steal Application Access Token (Mobile Tactic TA0031 - Credential Access)

MITRE ATT&CK T1635 (Steal Application Access Token) is an ATT&CK for Mobile Credential Access technique. Adversaries can steal user application access…

What MITRE ATT&CK Mobile T1635: Steal Application Access Token (Mobile Tactic TA0031 - Credential Access) requires

MITRE ATT&CK T1635 (Steal Application Access Token) is an ATT&CK for Mobile Credential Access technique. Adversaries can steal user application access tokens as a means of acquiring credentials to access remote systems and resources. This can occur through social engineering or URI hijacking and typically requires user action to grant access, such as through a system "Open With" dialogue. Application access tokens are used to make authorized API requests on behalf of a user and are commonly used as a way to access resources in cloud-based applications and software-as-a-service (SaaS). ATT&CK documents 1 sub-technique: T1635.001 URI Hijacking. Affected platforms: Android, iOS. MITRE-documented mitigations include M1006 Use Recent OS Version, M1011 User Guidance, M1013 Application Developer Guidance. Mobile controls map to NIST SP 800-124 Rev 2 and OWASP MASVS.

Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:

Primary source: https://attack.mitre.org/techniques/T1635/

SHA-256 integrity: 0db458d83d6e14a1606162e483b8a2e5d83e7e45694a329e0662c3edfa04002e

Primary Citations — 6 traced to source

  • MITRE ATT&CK for Mobile Technique T1635: Steal Application Access Token (https://attack.mitre.org/techniques/T1635/) with 1 sub-techniques
  • MITRE ATT&CK Mobile Tactic TA0031: Credential Access (https://attack.mitre.org/tactics/TA0031/)

+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.

Access

⚠ Important: Human Verification Required

Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.