The MITRE ATT&CK (TA0001) tactic — techniques for first entry into a target network: phishing, password spraying, valid stolen credentials, exploiting a public-facing service, drive-by. It is the first step of the kill chain, followed by persistence, escalation and lateral movement.
Perimeter defense: MFA, patching public services, anti-phishing training.