What MITRE CAPEC-575: Account Footprinting (Standard Attack Pattern - Low Severity) requires
MITRE CAPEC-575 (Account Footprinting) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary exploits functionality meant to identify information about the domain accounts and their permissions on the target system to an authorized user. By knowing what accounts are registered on the target system, the adversary can inform further and more targeted malicious behavior. Example Windows commands which can acquire this information are: "net user" and "dsquery". Likelihood of attack: Low. Typical severity: Low. Maps to weaknesses CWE-200. Relates to MITRE ATT&CK T1087.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/575.html
SHA-256 integrity: b3f323d636947c1e0f983b4addf8ec7e54f61b9e4fc515774c8b5bb638ce95b0
Primary Citations — 9 traced to source
- MITRE CAPEC-575: Account Footprinting (https://capec.mitre.org/data/definitions/575.html)
- CWE-200: underlying weakness (http://cwe.mitre.org/data/definitions/200.html)
+ 7 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-capec-capec-575-account-footprinting.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-capec-capec-575-account-footprinting.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-capec-capec-575-account-footprinting
- Back to registry: Browse all 10,085 compliance nodes