What MITRE ATT&CK T1687: Exploitation for Defense Impairment (Enterprise Tactic TA0112 - Defense Impairment) requires
MITRE ATT&CK T1687 (Exploitation for Defense Impairment) is an Enterprise Defense Impairment technique. Adversaries may exploit vulnerabilities in security software, infrastructure, or defensive components to degrade, disable, or otherwise continue to impair their ability to prevent, detect, or respond to malicious activity. Adversaries may exploit a system or application vulnerability to directly interfere with defensive mechanisms. Exploitation occurs when an adversary takes advantage of a programming error in software, services, or the operating system to execute adversary-controlled code, often with the goal of weakening or disabling protections. Vulnerabilities may exist in security tools such as antivirus, endpoint detection and response (EDR), firewalls, or other monitoring solutions. Adversaries may use prior reconnaissance or perform discovery activities (e.g., Software Discovery) t... Affected platforms: IaaS, Linux, macOS, SaaS, Windows.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1687/
SHA-256 integrity: a94207aa98420e591b6104135b1f209d7ab8a6c7c0f205fcfcb9ed39f1c96e29
Primary Citations — 4 traced to source
- MITRE ATT&CK Technique T1687: Exploitation for Defense Impairment (https://attack.mitre.org/techniques/T1687/)
- MITRE ATT&CK Tactic TA0112: Defense Impairment (https://attack.mitre.org/tactics/TA0112/)
+ 2 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access