MITRE ATT&CK Technique
T1505Server Software Component
- First Reported
- —
- Latest Reported
- —
Official Description
Adversaries may abuse legitimate extensible development features of servers to establish persistent access to systems. Enterprise server applications may include features that allow developers to write and install software or scripts to extend the functionality of the main application. Adversaries may install malicious components to extend and abuse server applications.(Citation: volexity_0day_sophos_FW)
- Tactics
- Persistence
- Platforms
- Windows, Linux, macOS, Network Devices, ESXi
- MITRE Version
- 1.5
- Last Modified
- Oct 24, 2025