Bidda Sovereign Intelligence · 10,085 Verified Nodes · 39 Sovereign Pillars

MITRE ATT&CK T1069.003: Cloud Groups (Enterprise Tactic TA0007 - Discovery)

MITRE ATT&CK T1069.003 (Cloud Groups) is an Enterprise Discovery sub-technique of T1069 (Permission Groups Discovery). Adversaries may attempt to find…

What MITRE ATT&CK T1069.003: Cloud Groups (Enterprise Tactic TA0007 - Discovery) requires

MITRE ATT&CK T1069.003 (Cloud Groups) is an Enterprise Discovery sub-technique of T1069 (Permission Groups Discovery). Adversaries may attempt to find cloud groups and permission settings. The knowledge of cloud permission groups can help adversaries determine the particular roles of users and groups within an environment, as well as which users are associated with a particular group. With authenticated access there are several tools that can be used to find permissions groups. The Get-MsolRole PowerShell cmdlet can be used to obtain roles and permissions groups for Exchange and Office 365 accounts . Affected platforms: SaaS, IaaS, Office Suite, Identity Provider.

Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:

Primary source: https://attack.mitre.org/techniques/T1069/003/

SHA-256 integrity: 8acaf1bea82f7af39e150df875aa5fc411cce52137c447f5c02dc62e4afe1034

Primary Citations — 5 traced to source

  • MITRE ATT&CK Technique T1069.003: Cloud Groups (https://attack.mitre.org/techniques/T1069/003/)
  • MITRE ATT&CK Tactic TA0007: Discovery (https://attack.mitre.org/tactics/TA0007/)

+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.

Access

⚠ Important: Human Verification Required

Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.