Тёмный

Using MITRE's ATT&CK Navigator for Gap Analysis 

Raiders of the Lost ARP
Подписаться 203
Просмотров 8 тыс.
50% 1

Cyber Threat Intelligence isn't just for the big companies! MITRE has built an open and expansive resource for all of us, and now we too can begin to leverage threat intelligence to improve our defenses and structure our operations. The Adversarial Tactics, Techniques, and Common Knowledge database (ATT&CK) helps us see not only the behaviors we can expect from the bad actors, but how we might mitigate the risk or detect their actions.
In this primer, we take a few minutes to get oriented and then set about evaluating some threat actors and their behaviors. After building that consolidated threat picture, we see how simple it is to compare that against defenses we have provisioned to help guide our future security efforts.
MITRE ATT&CK's Home Page: attack.mitre.org
ATT&CK Navigator (hosted): mitre-attack.github.io/attack...
ATT&CK Navigator (for install): github.com/mitre-attack/attac...
MITRE's Center for Threat-Informed Defense: ctid.mitre-engenuity.org

Опубликовано:

 

8 июн 2022

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 7   
@nicktamm3
@nicktamm3 Год назад
Amazing resource explanation! Thank you! BTW - love the shirt
@tmlondon3070
@tmlondon3070 Год назад
Great demo👌👍💯
@razzawazza
@razzawazza 3 месяца назад
Thanks for this mate
@AniketAmdekar
@AniketAmdekar 2 года назад
Really cool video! Can you share some examples of some successful attacks and how each layer of MITRE was used in it?
@MikeMcPhee101
@MikeMcPhee101 2 года назад
Hello Aniket! There are a lot of great threat intel blogs out there by Cisco and others that actually do exactly that. A great one to follow can be seen here: blog.talosintelligence.com/2021/08/vice-society-ransomware-printnightmare.html
@JD-rb1hv
@JD-rb1hv Год назад
Hey Mike, Thank you for wonderful video. I am comparing 2 APT group layers. Suppose, I want to select few techniques in an existing layer manually , how can i do that? I could not see any options to select additional techniques. Thanks in advance.
@MikeMcPhee101
@MikeMcPhee101 10 месяцев назад
Assuming you have already selected some techniques via a Group search or something, you can click on additional techniques to add them in. The trick is to ensure you actually score or color those before you deselect them or move away from that tab.
Далее
DOTA 2 - КЛАССИКА
19:17
Просмотров 269 тыс.
Detect, Deny, and Disrupt with MITRE D3FEND
1:04:08
Просмотров 8 тыс.
Workshop: MITRE ATT&CK Fundamentals
1:47:11
Просмотров 24 тыс.