Esc
Local File Permissions
Definition
Local file permissions is the systematic process of defining, implementing, and managing access control policies that dictate user permissions for accessing files on a local system through the configuration of operating system functionality.
Artifact Relationships:
This defensive technique is related to specific artifacts. Click the artifact node for more information.
Related Offensive Techniques:
These mappings are inferred, experimental, and will improve as the
knowledge graph grows.
These offensive techniques are determined related because of the way this defensive technique,, , and .
Stealth
Hijack Execution Flow
XSL Script Processing
Indicator Removal
Masquerading
Hide Artifacts
Rootkit
Process Injection
Obfuscated Files or Information
System Binary Proxy Execution
Impair Defenses
Trusted Developer Utilities Proxy Execution
Deobfuscate/Decode Files or Information
Collection
Data from Local System
Archive Collected Data
Email Collection
Automated Collection
Data Staged
Execution
Hijack Execution Flow
Scheduled Task/Job
Trusted Developer Utilities Proxy Execution
User Execution
Command and Scripting Interpreter
Software Deployment Tools
Discovery
File and Directory Discovery
System Owner/User Discovery
Remote System Discovery
System Network Configuration Discovery
Persistence
Boot or Logon Initialization Scripts
Modify Authentication Process
Event Triggered Execution
Boot or Logon Autostart Execution
Create or Modify System Process
Scheduled Task/Job
Server Software Component
Office Application Startup
Privilege Escalation
Boot or Logon Initialization Scripts
Event Triggered Execution
Boot or Logon Autostart Execution
Process Injection
Create or Modify System Process
Scheduled Task/Job
Abuse Elevation Control Mechanism
Credential Access
Modify Authentication Process
Credentials from Password Stores
OS Credential Dumping
Forced Authentication
Unsecured Credentials
Steal or Forge Authentication Certificates
Defense Impairment
Modify Authentication Process
Command and Control
Encrypted Channel
Application Layer Protocol
Exfiltration
Exfiltration Over C2 Channel
Exfiltration Over Alternative Protocol
Lateral Movement
Internal Spearphishing
Software Deployment Tools
References
All
User Manual
The following references were used to develop the Local File Permissions knowledge-base article.
(Note: the consideration of references does not imply specific functionality exists in an offering.)
File and Folder Permissions
Reference Type: User Manual Organization: Microsoft