Code Monkey home page Code Monkey logo

cyber-adversary-heatmaps's Introduction

Cyber Adversary Heatmaps

Intelligence around common attacker behaviors (MITRE ATT&CK TTPs), in the form of ATT&CK Navigator "layer" json files.

Paste .json file contents into the "Threat Intelligence" dropdown on the Threat Alignment page of the open-source Control Validation Compass project, to instantly surface technical & policy controls and offensive security tests aligned with these techniques.

The following heatmap sets are currently available:

Want to learn more about using ATT&CK Navigator to visualize TTP intelligence? See the MITRE ATT&CK CTI Training here, and ATT&CK Navigator documentation here.

Unless otherwise noted, heatmaps will use the following base ATT&CK Navigator settings:

{
	"name": "base",
	"versions": {
		"attack": "11",
		"navigator": "4.6.1",
		"layer": "4.3"
	},
	"domain": "enterprise-attack",
	"description": "",
	"filters": {
		"platforms": [
			"Linux",
			"macOS",
			"Windows",
			"PRE",
			"Containers",
			"Network",
			"Office 365",
			"SaaS",
			"Google Workspace",
			"IaaS",
			"Azure AD"
		]
	},
	"sorting": 0,
	"layout": {
		"layout": "side",
		"aggregateFunction": "max",
		"showID": false,
		"showName": true,
		"showAggregateScores": true,
		"countUnscored": false
	},
	"hideDisabled": false,
	"techniques": [],
	"gradient": {
		"colors": [
			"#ffffff",
			"#ff6666"
		],
		"minValue": 0,
		"maxValue": 1
	},
	"legendItems": [],
	"metadata": [],
	"links": [],
	"showTacticRowBackground": false,
	"tacticRowBackground": "#dddddd",
	"selectTechniquesAcrossTactics": true,
	"selectSubtechniquesWithParent": false
}

MITRE ATT&CK® is a registered trademark of The MITRE Corporation

cyber-adversary-heatmaps's People

Contributors

tropchaud avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.