Adversaries may insert, delete, or manipulate data in order to manipulate external outcomes or hide activity. By manipulating data, adversaries may attempt to affect a business process, organizational understanding, or decision making.
The type of modification and the impact it will have depends on the target application and process as well as the goals and objectives of the adversary. For complex systems, an adversary would likely need special expertise and possibly access to specialized software related to the system that would typically be gained through a prolonged information gathering campaign in order to have the desired impact.
View in MITRE ATT&CK®Capability ID | Capability Description | Mapping Type | ATT&CK ID | ATT&CK Name | Notes |
---|---|---|---|---|---|
azure_security_center_recommendations | Azure Security Center Recommendations | technique_scores | T1565 | Data Manipulation |
Comments
This control's "Immutable (read-only) root filesystem should be enforced for containers" recommendation can lead to mitigating a sub-technique of this technique by preventing modification of the local filesystem. Due to it being a recommendation and mitigating only one sub-technique, its score is assessed as Minimal.
References
|
azure_private_link | Azure Private Link | technique_scores | T1565 | Data Manipulation |
Comments
This control provides partial protection for one of this technique's sub-techniques resulting in an overall Minimal score.
References
|
azure_vpn_gateway | Azure VPN Gateway | technique_scores | T1565 | Data Manipulation |
Comments
This control provides significant protection against one sub-technique (Transmitted Data Manipulation) of this technique while not providing protection for its remaining sub-techniques resulting in overall score of Partial.
References
|
cloud_app_security_policies | Cloud App Security Policies | technique_scores | T1565 | Data Manipulation |
Comments
This control can detect and encrypt sensitive information at rest on supported platforms and restrict access.
References
|
Technique ID | Technique Name | Number of Mappings |
---|---|---|
T1565.003 | Runtime Data Manipulation | 12 |
T1565.001 | Stored Data Manipulation | 25 |
T1565.002 | Transmitted Data Manipulation | 14 |