Glossary

MITRE ATT&CK
defined.

A globally-accessible knowledge base of adversary tactics and techniques based on real-world observations.

A–Z

What is MITRE ATT&CK?

ATT&CK organises adversary behaviour into tactics (the “why”), techniques (the “how”), and sub-techniques. It’s the de-facto standard for SOC content engineering, threat modelling, and red team reporting.

Where this shows up.

See our web application penetration testing, API security testing, network penetration testing, and cloud security audit services for how we test for and defend against this class of issue.

Test for this in your stack

BOOK A FREE
scoping call.

30-minute call with an OSCP-certified engineer. Tailored proposal in 24 hours.