ABOUT
Overview
Use Cases
Mapping Methodology
Scoring Rubric
Related Projects
ATT&CK OBJECTS
Matrix
Tactics
Techniques
MAPPING FRAMEWORKS
About Mappings
Amazon Web Services (AWS)
Azure
CSA Cloud Controls Matrix (CCM)
CRI Profile
Known Exploited Vulnerabilities
Google Cloud Platform (GCP)
Intel vPro
NIST 800-53
M365
VERIS
You're currently viewing ATT&CK Version 16.1 Enterprise and VERIS 1.4.0.
Change versions here.
Home
Mapping Frameworks
VERIS Home
Email via user-executed attachment. Child of 'Email'
VERIS
action.malware.vector.Email attachment
Mappings
ATT&CK Version
16.1
ATT&CK Domain
Enterprise
VERIS
1.4.0
Change Versions
Capability ID
Capability Description
Mapping Type
ATT&CK ID
ATT&CK Name
action.malware.vector.Email attachment
Email via user-executed attachment. Child of 'Email'
related-to
T1036
Masquerading
action.malware.vector.Email attachment
Email via user-executed attachment. Child of 'Email'
related-to
T1071.001
Web Protocols
action.malware.vector.Email attachment
Email via user-executed attachment. Child of 'Email'
related-to
T1546.013
PowerShell Profile
action.malware.vector.Email attachment
Email via user-executed attachment. Child of 'Email'
related-to
T1203
Exploitation for Client Execution
action.malware.vector.Email attachment
Email via user-executed attachment. Child of 'Email'
related-to
T1559.002
Dynamic Data Exchange
action.malware.vector.Email attachment
Email via user-executed attachment. Child of 'Email'
related-to
T1566.001
Spearphishing Attachment
action.malware.vector.Email attachment
Email via user-executed attachment. Child of 'Email'
related-to
T1598.002
Spearphishing Attachment