| T1537_AWS | Transfer Data to Cloud Account | AWS | Exfiltration | MITRE ATT&CK |
| T1547.002_Windows | Boot or Logon Autostart Execution: Authentication Package | Windows | Persistence, Privilege Escalation | MITRE ATT&CK |
| T1547.005_Windows | Boot or Logon Autostart Execution: Security Support Provider | Windows | Persistence, Privilege Escalation | MITRE ATT&CK |
| T1619_AWS | Cloud Storage Object Discovery(AWS) | AWS | Discovery | MITRE ATT&CK |
| T1135_Windows | Network Share Discovery (Windows) | Windows | Discovery | MITRE ATT&CK |
| T1012 | Query Registry | | Discovery | MITRE ATT&CK |
| T1037.003 | Network Logon Script | | Persistence, Privilege Escalation | MITRE ATT&CK |
| T1048.002 | Exfiltration Over Asymmetric Encrypted Non-C2 Protocol | | Exfiltration | MITRE ATT&CK |
| T1059.003 | Windows Command Shell | | Execution | MITRE ATT&CK |
| T1068 | Exploitation for Privilege Escalation | | Privilege Escalation | MITRE ATT&CK |
| T1078.001 | Default Accounts | | Defense Evasion, Persistence, Privilege Escalation, Initial Access | MITRE ATT&CK |
| T1078.003 | Local Accounts | | Defense Evasion, Persistence, Privilege Escalation, Initial Access | MITRE ATT&CK |
| T1110.004 | Credential Stuffing | | Credential Access | MITRE ATT&CK |
| T1134.005 | SID-History Injection | | Defense Evasion, Privilege Escalation | MITRE ATT&CK |
| T1212 | Exploitation for Credential Access | | Credential Access | MITRE ATT&CK |
| T1495 | Firmware Corruption | | Impact | MITRE ATT&CK |
| T1528 | Steal Application Access Token | | Collection | MITRE ATT&CK |
| T1558.001 | Golden Ticket | | Credential Access | MITRE ATT&CK |
| T1558.004 | AS-REP Roasting | | | MITRE ATT&CK |
| T1574.007 | Path Interception by PATH Environment Variable | | Persistence, Privilege Escalation, Defense Evasion | MITRE ATT&CK |
| T1619 | Cloud Storage Object Discovery | | Discovery | MITRE ATT&CK |
| T1595.001 | Scanning IP Blocks | | Reconnaissance | MITRE ATT&CK |
| T1595.001_PRE | Active Scanning: Scanning IP Blocks | PRE | Reconnaissance | MITRE ATT&CK |
| T1069.003 | Cloud Groups | | Discovery | MITRE ATT&CK |