Compliance Node Overview
MITRE ATT&CK T1565.001 (Stored Data Manipulation) is an Enterprise Impact sub-technique of T1565 (Data Manipulation). Adversaries may insert, delete, or manipulate data at rest in order to influence external outcomes or hide activity, thus threatening the integrity of the data. By manipulating stored data, adversaries may attempt to affect a business process, organizational understanding, and decision making. Stored data could include a variety of file formats, such as Office files, databases, stored emails, and custom file formats. Affected platforms: Linux, macOS, Windows. MITRE-documented mitigations include M1022 Restrict File and Directory Permissions, M1029 Remote Data Storage, M1041 Encrypt Sensitive Information. The Center for Threat-Informed Defense maps this technique to NIST SP 800-53 Rev 5 controls AC-03, AC-04, AC-16, AC-17, AC-18, AC-19, AC-20, CA-07.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1565/001/
SHA-256 integrity: 807722107f5db00d3748040c5545046a33950864c7189e938e6b0b3d1d7db225
Primary Citations — 7 traced to source
- MITRE ATT&CK Technique T1565.001: Stored Data Manipulation (https://attack.mitre.org/techniques/T1565/001/)
- MITRE ATT&CK Tactic TA0040: Impact (https://attack.mitre.org/tactics/TA0040/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access