Cachedump
MITRE ATT&CK: S0119 View on attack.mitre.org
Aliases: Cachedump
- Malware type
- credential-stealer
- Operating systems
- windows
- Profile updated
- 2026-07-07 12:35:03
Context
Cachedump is a publicly-available tool that program extracts cached password hashes from a system’s registry.
Detection coverage
- 8 Sigma rules
Malware & tools used
- Cached Domain Credentials (attack-pattern)
Used by threat actors
- APT1 (threat-actor)
Reports & references
- Mandiant — Mandiant Apt1 Report (report)
- MITRE ATT&CK — S0119 (report)