{
  "technique_id": "T1538",
  "name": "Cloud Service Dashboard",
  "tactics": [
    "Discovery"
  ],
  "platforms": [
    "IaaS",
    "SaaS",
    "Office Suite",
    "Identity Provider"
  ],
  "summary": "An adversary may use a cloud service dashboard GUI with stolen credentials to gain useful information from an operational cloud environment, such as specific services, resources, and features. For example, the GCP Command Center can be used to view all assets, review findings of potential security risks, and run additional queries, such as finding public IP addresses and open ports...",
  "generated_by": "SOC Response Atlas by Basyrix"
}