What MITRE ATT&CK T1069.003: Cloud Groups (Enterprise Tactic TA0007 - Discovery) requires
MITRE ATT&CK T1069.003 (Cloud Groups) is an Enterprise Discovery sub-technique of T1069 (Permission Groups Discovery). Adversaries may attempt to find cloud groups and permission settings. The knowledge of cloud permission groups can help adversaries determine the particular roles of users and groups within an environment, as well as which users are associated with a particular group. With authenticated access there are several tools that can be used to find permissions groups. The Get-MsolRole PowerShell cmdlet can be used to obtain roles and permissions groups for Exchange and Office 365 accounts . Affected platforms: SaaS, IaaS, Office Suite, Identity Provider.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1069/003/
SHA-256 integrity: 8acaf1bea82f7af39e150df875aa5fc411cce52137c447f5c02dc62e4afe1034
Primary Citations — 5 traced to source
- MITRE ATT&CK Technique T1069.003: Cloud Groups (https://attack.mitre.org/techniques/T1069/003/)
- MITRE ATT&CK Tactic TA0007: Discovery (https://attack.mitre.org/tactics/TA0007/)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-attack-t1069-003-cloud-groups.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-attack-t1069-003-cloud-groups.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-attack-t1069-003-cloud-groups
- Back to registry: Browse all 10,085 compliance nodes