Mapping Attack Techniques

Navigate security work by MITRE ATT&CK tactic and technique — resolve a technique ID or name to the right skill, map a threat intel report or adversary emulation plan to procedures, and run the purple-team loop from technique to detection to validation. Use when a request names an ATT&CK ID like T1003.001, a tactic like lateral movement, an APT group or intel report, or when planning coverage against the matrix.

trilwu fbaa901 8.7 KB Updated

File contents

trilwu/secskills/tree/main/secskills-core/skills/mapping-attack-techniques commit fbaa901bcd

Frequently asked questions

npx skillmds add trilwu/mapping-attack-techniques