ryuki's blog

ryuki's blog

root

/

tags

/

Forge Web Credentials (T1606)

Forge Web Credentials (T1606)

Jan 01, 19701 min read

Adversaries may forge credential materials that can be used to gain access to web applications or Internet services.

Tactics
TA0006

Sub-techniques
T1606.001 T1606.002


See: MITRE ATT&CK

6 items with this tag.

  • Jun 07, 2025

    Backfire

    • hackthebox
    • medium
    • linux
    • c2
    • havoc
    • hardhat
    • ssrf
    • websocket
    • jwt
    • iptables
    • CVE-2024-41570
    • T1068
    • T1078
    • T1078.003
    • T1190
    • T1552
    • T1552.001
    • T1606
    • T1606.001
  • Apr 05, 2025

    Ghost

    • hackthebox
    • ctf
    • windows
    • insane
    • gitea
    • ldap-injection
    • goldensaml
    • SigmaPotato
    • sliver
    • amsi
    • adfs
    • gmsa
    • saml
    • mssql
    • linked-database
    • T1003
    • T1059
    • T1068
    • T1078
    • T1110
    • T1190
    • T1550
    • T1552
    • T1558
    • T1562
    • T1562.001
    • T1606
  • Feb 22, 2025

    Yummy

    • hackthebox
    • ctf
    • linux
    • hard
    • sql-injection
    • path-traversal
    • lfi
    • rsa
    • ics
    • mercurial
    • rsync
    • T1053
    • T1053.002
    • T1190
    • T1606
    • T1606.001
  • Feb 08, 2025

    MagicGardens

    • hackthebox
    • ctf
    • linux
    • insane
    • xss
    • qr
    • cookie-forging
    • capabilities
    • cap_sys_module
    • kernel-module
    • api
    • buffer-overflow
    • ghidra
    • docker
    • docker-registry
    • htpasswd
    • DockerRegistryGrabber
    • T1068
    • T1110
    • T1110.002
    • T1566
    • T1606
    • T1606.001
    • T1611
  • Nov 09, 2024

    Blazorized

    • hackthebox
    • ctf
    • windows
    • hard
    • blazor
    • web-assembly
    • script-path
    • kerberoasting
    • dcsync
    • jwt
    • dnspy
    • dll
    • T1078
    • T1078.002
    • T1098
    • T1110
    • T1110.002
    • T1558
    • T1558.003
    • T1606
    • T1606.001
  • Jul 13, 2024

    Corporate

    • hackthebox
    • ctf
    • windows
    • insane
    • gitea
    • xss
    • reflected-xss
    • html-injection
    • jwt
    • proxmox
    • docker
    • ldap
    • openvpn
    • bitwarden
    • T1110
    • T1110.004
    • T1021
    • T1021.004
    • T1098
    • T1190
    • T1539
    • T1555
    • T1555.005
    • T1599
    • T1606
    • T1606.002
    • T1611

Created with ❤️ and Quartz

  • Mastodon
  • Bluesky
  • GitHub