TechniquereconnaissanceATLAS

AML.T0087Gather Victim Identity Information

What it is

Adversaries may gather information about the victim's identity that can be used during targeting. Information about identities may include a variety of details, including personal data (ex: employee names, email addresses, photos, etc.) as well as sensitive details such as credentials or multi-factor authentication (MFA) configurations. Adversaries may gather this information in various ways, such as direct elicitation, [Search Victim-Owned Websites](/techniques/AML.T0003), or via leaked information on the black market. Adversaries may use the gathered victim data to Create Deepfakes and impersonate them in a convincing manner. This may create opportunities for adversaries to [Establish Accounts](/techniques/AML.T0021) under the impersonated identity, or allow them to perform convincing [Phishing](/techniques/AML.T0052) attacks.

References

  1. https://atlas.mitre.org/techniques/AML.T0087

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

ATLAS
Search Victim-Owned Websites
Technique
Gather Victim Org Information
Technique
Gather Victim Host Information
ATLAS
Establish Accounts
ATLAS
Search Open Websites/Domains
Technique
Gather Victim Network Information
Sourced from MITRE ATLAS — Adversarial Threat Landscape for AI Systems. Curated by Adam Lundqvist, SQUR.