Skip to content
← LibraryTechnique entry
AD-COERCE-SHADOWInitial Access

ShadowCoerce (MS-FSRVP)

IsPathSupported / IsPathShadowCopied call coerces the machine account to authenticate.

§ Where this technique fits

AD-COERCE-SHADOW is catalogued under the Initial Access tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.