Esc
Restore Software
Artifact Relationships:
This defensive technique is related to specific artifacts. Click the artifact node for more information.
Related Offensive Techniques:
These mappings are inferred, experimental, and will improve as the
knowledge graph grows.
These offensive techniques are determined related because of the way this defensive technique,, .
Execution
Hijack Execution Flow
Trusted Developer Utilities Proxy Execution
Software Deployment Tools
Impact
Inhibit System Recovery
Service Stop
Persistence
Compromise Host Software Binary
Pre-OS Boot
Event Triggered Execution
Office Application Startup
Software Extensions
Server Software Component
Boot or Logon Autostart Execution
Initial Access
Supply Chain Compromise
Stealth
Pre-OS Boot
Hijack Execution Flow
Rootkit
Trusted Developer Utilities Proxy Execution
Hide Artifacts
Virtualization/Sandbox Evasion
System Binary Proxy Execution
Privilege Escalation
Event Triggered Execution
Boot or Logon Autostart Execution
Lateral Movement
Software Deployment Tools
Credential Access
Input Capture
Exploitation for Credential Access
Steal or Forge Authentication Certificates
References
All
Guideline
The following references were used to develop the Restore Software knowledge-base article.
(Note: the consideration of references does not imply specific functionality exists in an offering.)
Cybersecurity Incident & Vulnerability Response Playbooks
Reference Type: Guideline Organization: Cybersecurity and Infrastructure Security Agency Author: Cybersecurity and Infrastructure Security Agency