MITRE ATT&CK®
The global standard for cataloguing adversary tactics, techniques and procedures. ATT&CK covers enterprise IT — Windows, macOS, Linux, cloud and containers — as well as industrial control systems. ELDRAEN maps all threat reporting and assessment findings to ATT&CK, giving clients a standardised view of adversary behaviour regardless of how the intelligence was sourced.
ATT&CK is the mapping backbone for enterprise threat intelligence, assessments and adversary profiling. Every flash alert, report and IOC in the platform is contextualised against the relevant technique. Detection rules in Sigma, KQL, YARA and SPL ship alongside mapped TTPs.
- Reconnaissance and resource development
- Initial access and execution techniques
- Persistence, privilege escalation and defence evasion
- Credential access, discovery and lateral movement
- Command and control, exfiltration and impact
- Industrial control system technique coverage