Skip to content
← LibraryTechnique entry
T1190Initial Access

Exploit Public-Facing Application

Use vulnerabilities in internet-facing software.

§ Where this technique fits

T1190 is catalogued under the Initial Access tactic of the offensive-security kill-chain. It appears in 7 approved dossiers in the registry, typically at step 2.6 on average.

Authoritative reference: attack.mitre.org/techniques/T1190/.

§ Dossiers chaining this technique

§ What commonly comes next

  1. 01
    Acquire Infrastructure
    T1583 · Resource Development
    seen 1×
  2. 02
    Azure Managed Identity Escalation
    C-AZ-MANAGED-ID-ESC · Privilege Escalation
    seen 1×
  3. 03seen 1×
  4. 04
    Chromium Mojo IPC Confused-Deputy
    BRW-CHROME-IPC · Privilege Escalation
    seen 1×
  5. 05
    Docker Socket Exposed
    K-DOCKER-SOCK · Initial Access
    seen 1×
  6. 06
    Renderer → Broker Sandbox Escape
    BRW-RENDERER-SBX-ESCAPE · Privilege Escalation
    seen 1×
  7. 07
    Valid Accounts
    T1078 · Initial Access
    seen 1×