Drive-by Compromise

Threat actors may gain access to a system through a user visiting a website over the normal course of browsing. Multiple ways of delivering exploit code to a browser exist (i.e., Drive-by Target), including:

ID: ATAGS-T1024
Sub-techniques:  No sub-techniques
Tactic: Initial Access
Targeted Components: Mission, Personnel & Identity
Responsibility: Customer
Created: 18 April 2026
Last Modified: 18 April 2026

Mitigations

This type of attack technique cannot be easily mitigated with preventive controls since it is based on the abuse of system features.