Esc
Authentication Package - T1547.002
(ATT&CK® Technique)
Definition
Adversaries may abuse authentication packages to execute DLLs when the system boots. Windows authentication package DLLs are loaded by the Local Security Authority (LSA) process at system start. They provide support for multiple logon processes and multiple security protocols to the operating system.
D3FEND Inferred Relationships
Browse the D3FEND knowledge graph by clicking on the nodes below.