Attack Coverage

Use when the user asks for MITRE ATT&CK coverage of the portfolio — "which ATT&CK techniques/tactics do our threats or validated chains cover", "build the ATT&CK Navigator layer", "ATT&CK heat map", or after updating threat models/validations to refresh the coverage roll-up. Deterministically joins validated attack chains, threat-model attack_refs, and finding-category-derived candidates against the pinned vendored ATT&CK table and emits a Navigator layer JSON plus a tactic/technique coverage one-pager.

openshift 2988230 7 files · 244.3 KB Updated

File contents

openshift/traust/tree/main/harnessing/attack-coverage commit 298823070a

Frequently asked questions

npx skillmds@latest add openshift/attack-coverage