MITRE ATT&CK

What is the MITRE ATT&CK Framework?

MITRE ATT&CK is a comprehensive, globally accessible framework that categorizes and describes tactics, techniques, and procedures (TTPs) used by cyber adversaries.

Designed to support cyber security practitioners in understanding and analyzing threat behaviors, MITRE ATT&CK provides a structured approach for identifying how attackers operate across different stages of an attack lifecycle, from initial access to data exfiltration.

With detailed matrices for enterprise environments, mobile devices, and cloud platforms, the framework is widely used for threat intelligence, red teaming, and improving defensive strategies by mapping adversarial actions.

While MITRE ATT&CK offers some mitigation techniques, cyber security professionals can also leverage the MITRE D3FEND framework to counter the attack techniques presented on ATT&CK.