Intro to MITRE ATT&CK Framework
Learn the fundamentals of the MITRE ATT&CK framework, understand its components, and apply it to enhance your cybersecurity practices.
...
Share
Understanding the MITRE ATT&CK Framework
Unit 1: Intro to MITRE ATT&CK
What is MITRE ATT&CK?
ATT&CK Use Cases
ATT&CK Structure
TTPs Unveiled
ATT&CK Navigator
Unit 2: Navigating the ATT&CK Matrix
Columns are Tactics
Rows are Techniques
Sub-Techniques
ATT&CK IDs
Matrix Walkthrough
ATT&CK Domains and the Cyber Kill Chain
Unit 1: ATT&CK Domains
Domains Overview
Enterprise Deep Dive
Mobile ATT&CK Explained
ICS Domain Unveiled
Domain Selection
Unit 2: ATT&CK and the Cyber Kill Chain
Kill Chain Intro
Reconnaissance Phase
Weaponization/Delivery
Exploitation/Install
C2 & Actions on Obj.
Unit 3: Common Attack Techniques
Phishing 101
Malware Deployment
Lateral Movement
Privilege Escalation
Data Exfiltration
Applying ATT&CK for Threat Modeling and Incident Response
Unit 1: Threat Modeling with ATT&CK
Intro to Threat Modeling
ATT&CK for Threat ID
Vulnerability Mapping
Scenario Creation
Documenting Your Model
Unit 2: Incident Response with ATT&CK
IR & ATT&CK
Technique Identification
Containment Strategies
Eradication with ATT&CK
Post-Incident Analysis
Unit 3: Security Control Mapping with ATT&CK
Security Control Intro
Mapping to ATT&CK
Gap Identification
Control Implementation
Continuous Improvement
Leveraging ATT&CK in Security Operations and Threat Intelligence
Unit 1: ATT&CK in Security Operations
ATT&CK Navigator Intro
MISP & ATT&CK
Sigma & ATT&CK
Caldera Intro
Threat Hunting w/ ATT&CK
Unit 2: ATT&CK for Red Teaming and Pen Testing
Planning with ATT&CK
Mapping to Pen Tests
Emulating Adversaries
Documenting Results
Purple Teaming w/ATT&CK
Unit 3: ATT&CK in Threat Intelligence
Profiling Actors w/ ATT&CK
Understanding Campaigns
Predicting Next Moves
Sharing Intel w/ ATT&CK
Staying Updated
ATT&CK Integration and Limitations
Unit 1: ATT&CK and Security Frameworks
NIST & ATT&CK
CIS Controls & ATT&CK
ISO 27001 & ATT&CK
Benefits of Framework Mapping
Mapping Gotchas
Unit 2: Limitations of the ATT&CK Framework
Coverage Gaps
The Unknowns
Scope Limitations
Framework Overhead
Subjectivity
Unit 3: Staying Current with ATT&CK
ATT&CK Updates
Community Resources
Tooling Updates
Training Resources
Internal Documentation