Esc
Path Interception by Unquoted Path - T1574.009
(Enterprise Technique)
Definition
Adversaries may execute their own malicious payloads by hijacking vulnerable file path references. Adversaries can take advantage of paths that lack surrounding quotations by placing an executable in a higher level directory within the path, so that Windows will choose the adversary's executable to launch.
D3FEND Inferred Relationships
Browse the D3FEND knowledge graph by clicking on the nodes below.