Esc
Malicious File - T1204.002
(ATT&CK® Technique)
Definition
An adversary may rely upon a user opening a malicious file in order to gain execution. Users may be subjected to social engineering to get them to open a file that will lead to code execution. This user action will typically be observed as follow-on behavior from Spearphishing Attachment. Adversaries may use several types of files that require a user to execute them, including .doc, .pdf, .xls, .rtf, .scr, .exe, .lnk, .pif, and .cpl.
D3FEND Inferred Relationships
Browse the D3FEND knowledge graph by clicking on the nodes below.