Isolatetechnique

D3-HBPIHardware-based Process Isolation

Hardware-based Process Isolation

Definition

Preventing one process from writing to the memory space of another process through hardware based address manager implementations.

Defends against36

TypeTargetConfidenceTier
TechniqueMulti-Factor Authentication Request Generationt1621100%live
SubTechniqueMshtat1218.005100%live
SubTechniqueSQL Stored Procedurest1505.001100%live
TechniqueScheduled Task/Jobt1053100%live
SubTechniqueCompiled HTML Filet1218.001100%live
SubTechniqueNetsh Helper DLLt1546.007100%live
TechniqueSystem Owner/User Discoveryt1033100%live
SubTechniqueWeb Shellt1505.003100%live
TechniqueSystem Service Discoveryt1007100%live
SubTechniqueAppInit DLLst1546.010100%live
SubTechniqueProcess Doppelgängingt1055.013100%live
TechniqueSystem Network Configuration Discoveryt1016100%live
SubTechniqueAsynchronous Procedure Callt1055.004100%live
SubTechniqueRundll32t1218.011100%live
TechniqueSystem Information Discoveryt1082100%live
TechniqueExploitation for Credential Accesst1212100%live
SubTechniqueParent PID Spoofingt1134.004100%live
SubTechniqueDisable or Modify Toolst1562.001100%live
TechniqueProcess Discoveryt1057100%live
SubTechniqueTransport Agentt1505.002100%live
TechniqueUse Alternate Authentication Materialt1550100%live
SubTechniqueCMSTPt1218.003100%live
TechniqueXSL Script Processingt1220100%live
SubTechniqueAppCert DLLst1546.009100%live
TechniqueDeobfuscate/Decode Files or Informationt1140100%live
TechniqueModify Authentication Processt1556100%live
SubTechniqueLSA Secretst1003.004100%live
SubTechniqueLSASS Memoryt1003.001100%live
SubTechniqueScheduled Taskt1053.005100%live
TechniqueSystem Time Discoveryt1124100%live

Showing top 30 of 36 by confidence. Click any target to see the full neighbourhood.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Defence
Kernel-based Process Isolation
Defence
Application-based Process Isolation
Defence
Process Segment Execution Prevention
Defence
Hardware-based Write Protection
Defence
Broadcast Domain Isolation
Defence
Network Isolation
Sourced from MITRE D3FEND ontology. Curated by Adam Lundqvist, SQUR.