> For the complete documentation index, see [llms.txt](https://dmcxblue.gitbook.io/red-team-notes-2-0/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://dmcxblue.gitbook.io/red-team-notes-2-0/red-team-techniques/initial-access/t1078-valid-accounts/local-accounts.md).

# Local Accounts

Adversaries may obtain and abuse credentials of a local account as a means of gaining Initial Access, persistence, Privilege Escalation, or Defense Evasion. Local accounts are those configured by an organization for use by users, remote support , services, or for administration on a single system or service.

Local Accounts may also be abused to elevate privileges and harvest credentials through OS Credential Dumping. Password reuse may allow the abuse of local accounts across a set of machines on a network for the purposes of Privilege Escalation and Lateral Movement.
