EC04 Compromised Access Token
Context | Remote Entity affects Container |
Problem | Access Tokens (other credentials) used to authenticate a container can be compromised. |
Solution | |
References | T1528: Steal Application Access Token [ATT&CK]; T1550: Use Alternate Authentication Material [ATT&CK]; |
Type | ns:type_ThreatPattern |
Victim | su:comp_Container |
Aggressor | su:comp_Container; su:comp_RemoteUser |
Aggr. role | ns:role_Client |
STRIDE | |
Threat |