TA0006: TA0006
Essential information
- MITRE technique ID
TA0006- Confidence
- 100/100
- Revoked
- No
- Published
- 20/12/2025 19:36
- Modified
- 29/05/2026 12:20
- Author / Source
- AlienVault
Description
No description.
Marking (TLP)
TLP:GREEN
External references
Related entities
Intrusion sets, malware, reports, vulnerabilities, indicators and other entities linked to this technique.
Intrusion sets (APT) (7)
-
UTA0178 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 ·
-
breakcore usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 ·
-
The MITRE Corporation Confidence 100
[APT29](https://attack.mitre.org/groups/G0016) is threat group that has been attributed to Russia's Foreign Intelligence Service (SVR).(Citation: White House Imposing Costs RU Gov April 2021)(Citation: UK Gov Malign RIS Activity April…
First seen 01/01/1970 · Last seen 16/11/5138 · -
interlock usesRansomware.Live Confidence 100
No description available
First seen 01/01/1970 · Last seen 16/11/5138 · -
gunra usesAlienVault Confidence 100
No description available
First seen 01/01/1970 · Last seen 16/11/5138 · -
p0-LUCR-1 usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 ·
-
SnakeKeylogger usesAlienVault Confidence 100First seen 01/01/1970 · Last seen 16/11/5138 ·
Malware (20)
-
GLASSTOKEN uses
-
CHAINLINE uses
-
DoNoT Loader usesFamily
-
SharpHound usesFamily
-
Rubeus usesFamily
-
Interlock usesFamily
-
BUSHWALK uses
-
AsukaStealer usesFamily
Reports (5)
-
22 MITREs 3 Malwares 1 APT
-
17 MITREs 1 Malware 5 Observables 1 APT
-
5 MITREs 1 Malware 1 APT
-
8 MITREs 6 Malwares
-
6 MITREs 1 Malware 4 Observables 1 APT
Vulnerabilities (CVE) (5)
A privilege escalation vulnerability in web component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x, 22.x) allows a user …
- Attack vector
- NETWORK
- Published
- 31/01/2024
- Modified
- 21/12/2025
An XML external entity or XXE vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x), Ivanti Policy Secure (9.x, 22.x) …
- Attack vector
- Network
- Published
- 13/02/2024
- Modified
- 27/05/2026
Ivanti Connect Secure (ICS, formerly known as Pulse Connect Secure) and Ivanti Policy Secure contain a command injection vulnerability in the web …
- Attack vector
- Network
- Published
- 10/01/2024
- Modified
- 27/05/2026
Ivanti Connect Secure (ICS, formerly known as Pulse Connect Secure), Ivanti Policy Secure, and Ivanti Neurons contain a server-side request forgery (SSRF) …
- Attack vector
- Network
- Published
- 31/01/2024
- Modified
- 27/05/2026
Ivanti Connect Secure (ICS, formerly known as Pulse Connect Secure) and Ivanti Policy Secure gateways contain an authentication bypass vulnerability in the …
- Attack vector
- Network
- Published
- 10/01/2024
- Modified
- 27/05/2026