T1136 - Create Account - MITRE ATT&CK
Type: MITRE ATT&CK
Frequency: Mentioned 36 times
Threat intelligence on T1136 - Create Account (MITRE ATT&CK). Found in 26 clusters.
Related Threat Clusters
- FortiWeb WAF Vulnerability Enables Full Admin Control Exploitation (Threat Score: 79.5)
- Critical CVE-2026-8206 Flaw in Kirki Plugin Exposes 500,000 WordPress Sites to Attacks (Threat Score: 78.0)
- FBI Seizes Iranian Hacktivist Group Websites After Stryker Cyberattack (Threat Score: 77.0)
- Italy Extradites Chinese Hacker Xu Zewei to the U.S. for COVID-19 Research Theft (Threat Score: 74.0)
- Critical WP Maps Pro Vulnerability Exposes 15,000 WordPress Sites to Admin Takeover (Threat Score: 74.0)
- Exploitation of Bomgar RMM Vulnerability Triggers LockBit Ransomware Surge (Threat Score: 72.6)
- Critical Zero-Day Vulnerability in Gogs Allows Remote Code Execution (Threat Score: 72.0)
- Fortinet Issues Security Advisory for Critical Vulnerabilities (Threat Score: 72.0)
- Critical Auth Bypass in Burst Statistics Plugin Enables Admin Takeover (Threat Score: 72.0)
- Critical Vulnerability in WordPress Plugin Exploited for Unauthorized Admin Access (Threat Score: 71.2)
Recent Articles
- Hacktivists are broadening their scope beyond political motivation - Securelist
- Critical Everest Forms Pro flaw exploited to take over WordPress sites - Bleepingcomputer
- Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites - Infosecurity-Magazine
- CVE-2026-8732: The WP Maps Pro Flaw That Lets Anyone Create a WordPress Admin Without a Password - Securityaffairs.Co
- WP Maps Pro bug exploited to create admin accounts on WordPress sites - Bleepingcomputer
- WP Maps Pro Vulnerability Exposed 15,000 WordPress Sites to Site Takeover - Thecyberexpress
- Waiting for security patch: Self-hosted Git service Gogs is vulnerable - Heise.De
- Lack of response to critical vulnerability in Gogs is a reminder of the limits of open source projects - Csoonline
- Reconstructing an Akira Ransomware Kill Chain from Perimeter and Endpoint Logs, (Wed, May 27th) - Isc.Sans.Edu
- INJ3CTOR3 Deploys JOMANGY Webshell in Advanced FreePBX Attacks - Thecyberexpress