Published Projects

ATT&CK Workbench

Project Summary

The Workbench project expands the functionality of the current platform to enable teams to explore, create, annotate, and share extensions of the ATT&CK knowledge base. This work increases the utility of using Workbench as a local knowledge base that can be extended with a team’s new or updated techniques, tactics, mitigations groups, and software.

Problem

Defenders struggle to integrate their organization’s local knowledge of adversaries and their TTPs with the public ATT&CK knowledge base.

Solution

Expand and improve the open-source software tool, ATT&CK Workbench, to allow organizations to better manage and extend their own local version of ATT&CK and keep it in sync with MITRE’s knowledge base.

Impact

Reduce the barriers for defenders to ensure that their threat intelligence is aligned with the public ATT&CK knowledge base.

Project Resources:

Project Announcement GitHub

Funding Research Participants



Non-Profit Participants


Explore More of Our Work:

Attack Flow v3

With Attack Flow, you will capture the entire attack and communicate what matters!

Continue reading

Threat-Informed Defense for the Financial Sector

Connect adversarial threat mitigations to cybersecurity program resources tailored to the financial sector, namely the Cyber Risk Institute …

Continue reading

Ambiguous Techniques

Building upon the research of Summiting the Pyramid, Ambiguous Techniques is a methodology to determine malicious intent behind seemingly benign …

Continue reading

Stay Informed

Sign up for our "Stay Informed" mailing list to receive announcements for project publications, upcoming events, and other news about the Center.