Acquire Infrastructure
Acquire Infrastructure (T1583) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy, lease, rent, or obtain infrastructure that can be used during targeting.
Loading AttackTrace...
ATT&CK tactic
50 techniques mapped to this tactic.
Acquire Infrastructure (T1583) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy, lease, rent, or obtain infrastructure that can be used during targeting.
Domains (T1583.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may acquire domains that can be used during targeting.
DNS Server (T1583.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may set up their own Domain Name System (DNS) servers that can be used during targeting.
Virtual Private Server (T1583.003) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may rent Virtual Private Servers (VPSs)Â that can be used during targeting.
Server (T1583.004) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy, lease, rent, or obtain physical servers that can be used during targeting.
Botnet (T1583.005) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy, lease, or rent a network of compromised systems that can be used during targeting.
Web Services (T1583.006) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may register for web services that can be used during targeting.
Serverless (T1583.007) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may purchase and configure serverless cloud infrastructure, such as Cloudflare Workers, AWS Lambda functions, or Google Apps Scripts, that can be used during targeting.
Malvertising (T1583.008) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may purchase online advertisements that can be abused to distribute malware to victims.
Compromise Infrastructure (T1584) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise third party infrastructure that can be used during targeting.
Domains (T1584.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may hijack domains and/or subdomains that can be used during targeting.
DNS Server (T1584.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise third party DNS servers that can be used during targeting.
Virtual Private Server (T1584.003) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise third party Virtual Private Servers (VPSs) that can be used during targeting.
Server (T1584.004) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise third party servers that can be used during targeting.
Botnet (T1584.005) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise numerous third party systems to form a botnet that can be used during targeting.
Web Services (T1584.006) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise access to third party web services that can be used during targeting.
Serverless (T1584.007) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise serverless cloud infrastructure, such as Cloudflare Workers, AWS Lambda functions, or Google Apps Scripts, that can be used during targeting.
Network Devices (T1584.008) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise third party network devices that can be used during targeting.
Establish Accounts (T1585) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create and cultivate accounts with services that can be used during targeting.
Social Media Accounts (T1585.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create and cultivate social media accounts that can be used during targeting.
Email Accounts (T1585.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create email accounts that can be used during targeting.
Cloud Accounts (T1585.003) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create accounts with cloud providers that can be used during targeting.
Compromise Accounts (T1586) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise accounts with services that can be used during targeting.
Social Media Accounts (T1586.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise social media accounts that can be used during targeting.
Email Accounts (T1586.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise email accounts that can be used during targeting.
Cloud Accounts (T1586.003) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may compromise cloud accounts that can be used during targeting.
Develop Capabilities (T1587) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may build capabilities that can be used during targeting.
Malware (T1587.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may develop malware and malware components that can be used during targeting.
Code Signing Certificates (T1587.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create self signed code signing certificates that can be used during targeting.
Digital Certificates (T1587.003) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create self signed SSL/TLS certificates that can be used during targeting.
Exploits (T1587.004) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may develop exploits that can be used during targeting.
Obtain Capabilities (T1588) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy and/or steal capabilities that can be used during targeting.
Malware (T1588.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy, steal, or download malware that can be used during targeting.
Tool (T1588.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy, steal, or download software tools that can be used during targeting.
Code Signing Certificates (T1588.003) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy and/or steal code signing certificates that can be used during targeting.
Digital Certificates (T1588.004) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy and/or steal SSL/TLS certificates that can be used during targeting.
Exploits (T1588.005) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may buy, steal, or download exploits that can be used during targeting.
Vulnerabilities (T1588.006) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may acquire information about vulnerabilities that can be used during targeting.
Artificial Intelligence (T1588.007) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may obtain access to generative artificial intelligence tools, such as large language models (LLMs), to aid various techniques during targeting.
Stage Capabilities (T1608) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may upload, install, or otherwise set up capabilities that can be used during targeting.
Upload Malware (T1608.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may upload malware to third party or adversary controlled infrastructure to make it accessible during targeting.
Upload Tool (T1608.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may upload tools to third party or adversary controlled infrastructure to make it accessible during targeting.
Install Digital Certificate (T1608.003) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may install SSL/TLS certificates that can be used during targeting.
Drive by Target (T1608.004) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may prepare an operational environment to infect systems that visit a website over the normal course of browsing.
Link Target (T1608.005) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may put in place resources that are referenced by a link that can be used during targeting.
SEO Poisoning (T1608.006) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may poison mechanisms that influence search engine optimization (SEO) to further lure staged capabilities towards potential victims.
Acquire Access (T1650) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may purchase or otherwise acquire an existing access to a target system or network.
Generate Content (T1683) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create or generate content to support targeting and operations.
Written Content (T1683.001) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create or tailor written materials to support targeting and malicious operations.
Audio Visual Content (T1683.002) is a MITRE ATT&CK technique associated with Resource Development . Adversaries may create or manipulate audio, image, and video content to support targeting and malicious operations.