Home/Glossary/MITRE ATT&CK Framework

MITRE ATT&CK Framework

A globally accessible knowledge base of adversary tactics, techniques, and procedures mapped to the attack lifecycle.

Risk & ResilienceAlso called: "mitre attack framework", "att&ck matrix"

MITRE ATT&CK organizes how adversaries operate so defenders can align detections, controls, and testing to real-world behavior.

How teams use ATT&CK

  • Gap analysis: map current detections to coverage gaps.
  • Purple teaming: simulate techniques to test controls.
  • Threat intelligence: enrich incidents with adversary context.

Helpful resources

  • Enterprise matrix for traditional and cloud environments.
  • Managed services navigator for mapping controls to ATT&CK.
  • Regular updates from MITRE’s open-source community.