Compliance Node Overview
MITRE ATT&CK T1586.003 (Cloud Accounts) is an Enterprise Resource Development sub-technique of T1586 (Compromise Accounts). Adversaries may compromise cloud accounts that can be used during targeting. Adversaries can use compromised cloud accounts to further their operations, including leveraging cloud storage services such as Dropbox, Microsoft OneDrive, or AWS S3 buckets for Exfiltration to Cloud Storage or to Upload Tools. Cloud accounts can also be used in the acquisition of infrastructure, such as Virtual Private Servers or Serverless infrastructure. Affected platforms: PRE. MITRE-documented mitigations include M1056 Pre-compromise.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1586/003/
SHA-256 integrity: dda9d6215c9654ed43158d219391bf9ce264f64eb8bb02e67d895aa2e45d3f78
Primary Citations — 5 traced to source
- MITRE ATT&CK Technique T1586.003: Cloud Accounts (https://attack.mitre.org/techniques/T1586/003/)
- MITRE ATT&CK Tactic TA0042: Resource Development (https://attack.mitre.org/tactics/TA0042/)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.