Terms
Alphabetical index of published term entries with tag filters and quick sort.
- TERMLeast PrivilegeUpdated Jan 06, 2026
Least privilege means granting only the minimum access necessary to perform an authorized task.
- Updated Jan 03, 2026
Adversaries may modify the lifecycle policies of a cloud storage bucket to destroy all objects stored within.
- Updated Jan 03, 2026
Adversaries may modify file or directory permissions/attributes to evade access control lists (ACLs) and access protected files.(Citation: Hybrid Analysis Icacls1 June 2018)(Citation: Hybrid Analysis Icacls2 May 2018) File and directory permissions are commonly managed by ACLs configured by the file or directory owner, or users with the appropriate permissions. File and directory ACL implementations vary by platform, but generally explicitly designate which users or groups can perform which actions (read, write, execute, etc.).
- TERMLSA SecretsUpdated Jan 03, 2026
Adversaries with SYSTEM access to a host may attempt to access Local Security Authority (LSA) secrets, which can contain a variety of different credential materials, such as credentials for service accounts.(Citation: Passcape LSA Secrets)(Citation: Microsoft AD Admin Tier Model)(Citation: Tilbury Windows Credentials) LSA secrets are stored in the registry at <code HKEY LOCAL MACHINE\SECURITY\Policy\Secrets</code . LSA secrets can also be dumped from memory.(Citation: ired Dumping LSA Secrets)