>
Windows Syscalls
Syscalls
Version map
ATT&CK
Malware
Generator
Syscall graph
Blog
Language
EN — English
FR — Français
ES — Español
DE — Deutsch
← Back to ATT&CK index
T1555
Credentials from Password Stores
View on attack.mitre.org →
1 syscalls implement this technique
NtQueryValueKey
Reads a value from a registry key — the targeted credential and config harvest primitive.