TACTIC: PRIVILEGE ESCALATION
Exploitation for Privilege Escalation (T1068): real cases
MITRE Definition ↗ Adversaries exploit software vulnerabilities in operating systems to execute code with elevated system permissions.
Key Facts
Technique ID
T1068
Privilege Escalation
Mapped Cases
1
Primary sources
Related Laws
0
Criminal statutes
- ATT&CK Technique Identifier: T1068.
- Tactical Phase: Privilege Escalation.
- Substantiated in 1 primary court prosecution cases.
- Every associated case includes verbatim evidentiary excerpts from indictments or sworn affidavits.
Verified Evidentiary Case Records
U.S. v. Park Jin Hyok (Lazarus Group / Chosun Expo)
fugitive 2018-06-08
Primary Source Evidence Excerpt: Criminal Complaint ¶ 94, Page 66
"WannaCry automated exploitation of kernel pool memory corruption via EternalBlue to execute ring 0 shellcode."
U.S. District Court for the Central District of California
View full case dossier →