Esc
Asset Inventory
Definition
Asset inventorying identifies and records the organization's assets and enriches each inventory item with knowledge about their vulnerabilities.
Synonyms: Asset Discovery, Asset Inventorying.Artifact Relationships:
This defensive technique is related to specific artifacts. Click the artifact node for more information.
Technique Subclasses
There are 8 techniques in this category, Asset Inventory.
| Name | ID | Definition | Synonyms |
|---|---|---|---|
| Asset Inventory | D3-AI | Asset inventorying identifies and records the organization's assets and enriches each inventory item with knowledge about their vulnerabilities. | Asset Discovery , and Asset Inventorying |
| - Software Inventory | D3-SWI | Software inventorying identifies and records the software items in the organization's architecture. | Software Discovery , and Software Inventorying |
| - Container Image Analysis | D3-CIA | Analyzing a Container Image with respect to a set of policies. | Container Image Scanning |
| - Asset Vulnerability Enumeration | D3-AVE | Asset vulnerability enumeration enriches inventory items with knowledge identifying their vulnerabilities. | |
| - Configuration Inventory | D3-CI | Configuration inventory identifies and records the configuration of software and hardware and their components throughout the organization. | |
| - Network Node Inventory | D3-NNI | Network node inventorying identifies and records all the network nodes (hosts, routers, switches, firewalls, etc.) in the organization's architecture. | System Inventorying , and System Discovery |
| - Data Inventory | D3-DI | Data inventorying identifies and records the schemas, formats, volumes, and locations of data stored and used on the organization's architecture. | Data Discovery , and Data Inventorying |
| - Hardware Component Inventory | D3-HCI | Hardware component inventorying identifies and records the hardware items in the organization's architecture. | Hardware Component Inventorying , and Hardware Component Discovery |
Related Offensive Techniques:
These mappings are inferred, experimental, and will improve as the
knowledge graph grows.
These offensive techniques are determined related because of the way this defensive technique,, , , and .
Stealth
System Binary Proxy Execution
Pre-OS Boot
Hijack Execution Flow
Rootkit
Trusted Developer Utilities Proxy Execution
Hide Artifacts
Virtualization/Sandbox Evasion
Impair Defenses
Access Token Manipulation
Collection
Email Collection
Input Capture
Data from Information Repositories
Video Capture
Data from Removable Media
Audio Capture
Lateral Movement
Software Deployment Tools
Internal Spearphishing
Replication Through Removable Media
Execution
Hijack Execution Flow
Trusted Developer Utilities Proxy Execution
Software Deployment Tools
Initial Access
Supply Chain Compromise
Phishing
Replication Through Removable Media
Hardware Additions
Persistence
Boot or Logon Autostart Execution
Compromise Host Software Binary
Pre-OS Boot
Event Triggered Execution
Office Application Startup
Software Extensions
Server Software Component
Modify Authentication Process
Boot or Logon Initialization Scripts
Implant Internal Image
Modify Registry
Create or Modify System Process
Privilege Escalation
Boot or Logon Autostart Execution
Event Triggered Execution
Abuse Elevation Control Mechanism
Access Token Manipulation
Domain or Tenant Policy Modification
Boot or Logon Initialization Scripts
Create or Modify System Process
Impact
Inhibit System Recovery
Service Stop
Credential Access
Input Capture
Exploitation for Credential Access
Steal or Forge Authentication Certificates
Modify Authentication Process
Unsecured Credentials
Multi-Factor Authentication Interception
OS Credential Dumping
Credentials from Password Stores
Discovery
Virtualization/Sandbox Evasion
Cloud Service Dashboard
Cloud Service Discovery
Group Policy Discovery
Software Discovery
System Location Discovery
Cloud Storage Object Discovery
System Owner/User Discovery
Query Registry
Defense Impairment
Modify Authentication Process
File and Directory Permissions Modification
Modify Cloud Compute Infrastructure
Modify Cloud Resource Hierarchy
Domain or Tenant Policy Modification
Subvert Trust Controls
Modify Registry
Rogue Domain Controller
Command and Control
Communication Through Removable Media