MITRE ATT&CK - Adversary Tactics & Techniques

ATT&CK is a globally accessible knowledge base of adversary tactics and techniques based on real-world observations. In SEPSES-KG it anchors the attack-chain narrative from vulnerability (CVE) and weakness (CWE) to observable adversary behavior.

SEPSES-KG COVERAGE

Active Tactics14
Mapped Techniques0
CAPEC Mappings412

Latest Techniques

Filter ATT&CK Data

193 matching techniques found

ATT&CK Matrix: Tactics x Technique count

Initial Access (12)
Execution (38)
Persistence (29)
Privilege Escalation (24)
Defense Evasion (16)
Credential Access (32)
Discovery (9)
Lateral Movement (15)
Collection (6)
Intensity Key: 1-10 tech 11-20 tech 21-30 tech 31+ tech

Techniques per Tactic

Platform Coverage

193
Windows Server / Client
50%
Linux / POSIX Systems
25%
Industrial Control Systems
17%
Cloud Environments
8%

Technique Additions per ATT&CK Version

Understanding ATT&CK Fields

Technique ID

Unique identifier beginning with 'T' followed by 4 digits (e.g., T1059) referencing specific defense evasion or execution behaviors.

Name & Description

High-level summary naming the system action exploited by adversaries (e.g., command interpreter usage) with contextual use-cases.

Tactic Mapping

Categorization showing the overarching adversary objective (e.g., Execution, Persistence, Impact) associated with the technique.

Platform

The execution environment or host OS targeted (e.g., Windows, ICS, macOS) enabling system-specific defense alignments.

CAPEC & Defense Links

Critical semantic links within SEPSES-KG bridging abstract patterns of attack to specific CVE exploits and technical countermeasures.