GCP identity_aware_proxy Mappings

Identity Aware Proxy (IAP) includes a number of features that can be used to protect access to Google Cloud hosted resources and applications hosted on Google. IAP lets you establish a central authorization layer for applications accessed by HTTPS, so you can use an application-level access control model instead of relying on network-level firewalls.

Mappings

Capability ID Capability Description Category Value ATT&CK ID ATT&CK Name
identity_aware_proxy Identity Aware Proxy protect minimal T1550.001 Application Access Token
identity_aware_proxy Identity Aware Proxy protect minimal T1528 Steal Application Access Token
identity_aware_proxy Identity Aware Proxy detect partial T1528 Steal Application Access Token
identity_aware_proxy Identity Aware Proxy detect minimal T1098.001 Additional Cloud Credentials
identity_aware_proxy Identity Aware Proxy protect partial T1078 Valid Accounts
identity_aware_proxy Identity Aware Proxy protect partial T1078.004 Cloud Accounts
identity_aware_proxy Identity Aware Proxy protect partial T1190 Exploit Public-Facing Application