What MITRE ATT&CK T1584.007: Serverless (Enterprise Tactic TA0042 - Resource Development) requires
MITRE ATT&CK T1584.007 (Serverless) is an Enterprise Resource Development sub-technique of T1584 (Compromise Infrastructure). Adversaries may compromise serverless cloud infrastructure, such as Cloudflare Workers, AWS Lambda functions, or Google Apps Scripts, that can be used during targeting. By utilizing serverless infrastructure, adversaries can make it more difficult to attribute infrastructure used during operations back to them. Once compromised, the serverless runtime environment can be leveraged to either respond directly to infected machines or to Proxy traffic to an adversary-owned command and control server. Affected platforms: PRE. MITRE-documented mitigations include M1056 Pre-compromise.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1584/007/
SHA-256 integrity: f1353e137579869dda73bd4a4c4dd1131a6d193fddccafe3c63c6e740c51b25f
Primary Citations — 6 traced to source
- MITRE ATT&CK Technique T1584.007: Serverless (https://attack.mitre.org/techniques/T1584/007/)
- MITRE ATT&CK Tactic TA0042: Resource Development (https://attack.mitre.org/tactics/TA0042/)
+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-attack-t1584-007-serverless.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-attack-t1584-007-serverless.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-attack-t1584-007-serverless
- Back to registry: Browse all 10,085 compliance nodes