Compliance Node Overview
MITRE ATT&CK T1485.001 (Lifecycle-Triggered Deletion) is an Enterprise Impact sub-technique of T1485 (Data Destruction). Adversaries may modify the lifecycle policies of a cloud storage bucket to destroy all objects stored within. Cloud storage buckets often allow users to set lifecycle policies to automate the migration, archival, or deletion of objects after a set period of time. If a threat actor has sufficient permissions to modify these policies, they may be able to delete all objects at once. Affected platforms: IaaS. MITRE-documented mitigations include M1018 User Account Management, M1053 Data Backup. The Center for Threat-Informed Defense maps this technique to NIST SP 800-53 Rev 5 controls AC-02, AC-03, AC-06, CM-02, CP-02, CP-07, CP-09, CP-10.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1485/001/
SHA-256 integrity: 6f29179d8e218e689939ce9bb0a85f7b3c64ac39c230f63e6b3916ae49103f94
Primary Citations — 7 traced to source
- MITRE ATT&CK Technique T1485.001: Lifecycle-Triggered Deletion (https://attack.mitre.org/techniques/T1485/001/)
- MITRE ATT&CK Tactic TA0040: Impact (https://attack.mitre.org/tactics/TA0040/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access