Skip to content

Hide Navigation Hide TOC

Compromise Accounts (c6374cbe-799a-4648-b1e2-2a66bb42d3f3)

Adversaries may compromise accounts with services that can be used during targeting. For operations incorporating social engineering, the utilization of an online persona may be important. Rather than creating and cultivating accounts (i.e. Establish Accounts), adversaries may compromise existing accounts. Utilizing an existing persona may engender a level of trust in a potential victim if they have a relationship, or knowledge of, the compromised persona.

A variety of methods exist for compromising accounts, such as gathering credentials via Phishing for Information, purchasing credentials from third-party sites, brute forcing credentials (ex: password reuse from breach credential dumps), or paying employees, suppliers or business partners for access to credentials.[AnonHBGary][Microsoft DEV-0537] Prior to compromising accounts, adversaries may conduct Reconnaissance to inform decisions about which accounts to compromise to further their operation.

Personas may exist on a single site or across multiple sites (ex: Facebook, LinkedIn, Twitter, Google, etc.). Compromised accounts may require additional development, this could include filling out or modifying profile information, further developing social networks, or incorporating photos.

Adversaries may directly leverage compromised email accounts for Phishing for Information or Phishing.

Cluster A Galaxy A Cluster B Galaxy B Level
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Compromise Accounts (c6374cbe-799a-4648-b1e2-2a66bb42d3f3) Tidal Technique 1
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (4c0db4e5-14e0-4fb7-88b0-bb391ce5ad58) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (bae33d7b-c835-4eda-b310-bf426270c0b1) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Stage Capabilities (ec2a76e6-3530-43e1-9e80-686e4b214ac8) Tidal Technique 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (5bcbb0c5-7061-481f-a677-09028a6c59f7) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (0f77a14a-d450-4885-b81f-23eeffa53a7e) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (3426077d-3b9c-4f77-a1c6-d68f0dea670e) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (fe96475a-3090-449d-91fd-ae73cb4d9c7c) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (be637d66-5110-4872-bc15-63b062c3f290) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Obtain Capabilities (a6740db8-10d6-4e5b-986b-7695d3fc4b85) Tidal Technique 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (f2661f07-9027-4d19-9028-d07b7511f3d5) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (6f152555-36a5-4ec9-8b9b-f0b32c3ccef8) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (3bd8c928-a7c8-4376-8f2f-2e0fcb449b37) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Acquire Access (478da817-1914-50f6-b1fd-434081a34354) Tidal Technique 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (4b187604-88ab-4972-9836-90a04c705e10) Unknown 2
Acquire Infrastructure (66ce76fb-5e1b-4462-9b46-d59bdfc6d3f3) Tidal Technique Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (49ae7bf1-a313-41d6-ad4c-74efc4c80ab6) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (8ecf5275-c6d1-4fe3-a24a-63fa1f3144fe) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (b9f5f6b7-ecff-48c8-a23e-c58fd9e41a0d) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (d7594eaf-286f-4484-94fa-8608c911767a) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (6e4a0960-dcdc-4e42-9aa1-70d6fc3677b2) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (1ff8b8f4-fa76-4226-a28b-b0c25c78b2eb) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (49c73c13-2281-45d3-af26-ad52a1cecb7a) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (2c04d7c8-67a3-4b1a-bd71-47b7c5a54b23) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (66caa162-711c-44ac-b96d-0552cf328f84) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (6824c82b-2959-4402-831a-6e7c2010d1c5) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Develop Capabilities (bf660248-2098-499b-b90c-8c47efb26c70) Tidal Technique 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (2e883e0d-1108-431a-a2dd-98ba98b69417) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (4c7e52b1-9881-4966-b9b5-d88c5e88d604) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (755c1883-4046-446b-a76a-88a842dd1c2c) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (ef312a77-6b1a-4be6-a220-3c689e7fcd9d) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (fe0bf22c-efb2-4bc6-96d8-e0e909502fd7) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (5a57d258-0b23-431b-b50e-3150d2c0e52c) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (0b2a9df9-65c8-4a01-a0e6-d411e54a4c7b) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (83e4f633-67fb-4d87-b1b3-8a7a2e60778b) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (f2b5a3e4-8a59-41f5-88c4-142f2da251c8) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (ce71e252-3403-4287-a0b5-9328fa88af96) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (68d5de9f-ca86-4bd3-bf69-524d82f7bc7a) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (8bdeddbe-14aa-412a-883a-7d6fe286c60e) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Establish Accounts (9a2d6628-0dd7-4f25-a242-b752fcf47ff4) Tidal Technique 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (8842e2e3-c4f8-446b-821b-5930cb15d30c) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (581722ea-81a5-4c73-a703-2c994f1cf814) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (60ac24aa-ce63-5c1d-8126-db20a27d85be) Unknown 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Compromise Infrastructure (c12d81d3-abe4-43d7-8a65-f4b3150e722d) Tidal Technique 2
Resource Development (989d09c2-12b8-4419-9b34-a328cf295fff) Tidal Tactic Private Cluster (c30faf84-496b-4f27-a4bc-aa36d583c69f) Unknown 2