Compliance Node Overview
MITRE ATT&CK T1499.004 (Application or System Exploitation) is an Enterprise Impact sub-technique of T1499 (Endpoint Denial of Service). Adversaries may exploit software vulnerabilities that can cause an application or system to crash and deny availability to users. Some systems may automatically restart critical applications and services when crashes occur, but they can likely be re-exploited to cause a persistent denial of service (DoS) condition. Adversaries may exploit known or zero-day vulnerabilities to crash applications and/or systems, which may also lead to dependent applications and/or systems to be in a DoS condition. Affected platforms: Windows, IaaS, Linux, macOS. MITRE-documented mitigations include M1037 Filter Network Traffic. The Center for Threat-Informed Defense maps this technique to NIST SP 800-53 Rev 5 controls AC-03, AC-04, CA-07, CM-06, CM-07, SC-07, SI-04, SI-10.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1499/004/
SHA-256 integrity: 88de2b54851cc5722d6ef23853062f978272007c3be4735967e02d3433423255
Primary Citations — 7 traced to source
- MITRE ATT&CK Technique T1499.004: Application or System Exploitation (https://attack.mitre.org/techniques/T1499/004/)
- MITRE ATT&CK Tactic TA0040: Impact (https://attack.mitre.org/tactics/TA0040/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access