Compliance Node Overview
MITRE ATT&CK T1656 (Impersonation) is an Enterprise Defense Evasion technique. Adversaries may impersonate a trusted person or organization in order to persuade and trick a target into performing some action on their behalf. For example, adversaries may communicate with victims (via Phishing for Information, Phishing, or Internal Spearphishing) while impersonating a known sender such as an executive, colleague, or third-party vendor. Established trust can then be leveraged to accomplish an adversary's ultimate goals, possibly against multiple victims. Affected platforms: Linux, macOS, Windows, SaaS, Office Suite. MITRE-documented mitigations include M1017 User Training, M1019 Threat Intelligence Program.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/versions/v16/techniques/T1656/
SHA-256 integrity: bd7e993c2cc4035e4e39bf022327243adb1330926febdb3ab47bb54a6eaa0139
Primary Citations — 6 traced to source
- MITRE ATT&CK Technique T1656: Impersonation (https://attack.mitre.org/versions/v16/techniques/T1656/)
- MITRE ATT&CK Tactic TA0005: Defense Evasion (https://attack.mitre.org/tactics/TA0005/)
+ 4 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access